Description
F5 Access for Android before version 3.1.2 which uses HTTPS does not verify the remote endpoint identity. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Problem types
CWE-295 Improper Certificate Validation
Product status
3.1.0 before 3.1.2
Credits
F5
References
my.f5.com/manage/s/article/K000152049