← Back to CVEs
CVE-2025-58781
N/ADescription
WTW-EAGLE App does not properly validate server certificates, which may allow a man-in-the-middle attacker to monitor encrypted traffic.
CVE Details
CVSS v3.1 ScoreN/A
Published9/12/2025
Last Modified9/15/2025
Sourcenvd
Honeypot Sightings0
Weaknesses (CWE)
CWE-295
References
https://apps.apple.com/jp/app/wtw-eagle/id1365998037?uo=4(vultures@jpcert.or.jp)
https://jvn.jp/en/jp/JVN89109713/(vultures@jpcert.or.jp)
https://play.google.com/store/apps/details?id=com.generalcomp.wtw(vultures@jpcert.or.jp)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.