CVE-2025-2190

T

he mobile application (com.transsnet.store) has a man-in-the-middle attack vulnerability, which may lead to code injection risks.

Configurations

Configuration 1 (hide)

cpe:2.3:a:tecno:com.transsnet.store:*:*:*:*:*:*:*:*

History

05 Sep 2025, 07:15

Type Values Removed Values Added
CWE CWE-300 CWE-297

25 Jun 2025, 14:36

Type Values Removed Values Added
First Time Tecno com.transsnet.store
Tecno
CPE cpe:2.3:a:tecno:com.transsnet.store:*:*:*:*:*:*:*:*
References () https://security.tecno.com/SRC/blogdetail/393?lang=en_US - () https://security.tecno.com/SRC/blogdetail/393?lang=en_US - Vendor Advisory
References () https://security.tecno.com/SRC/securityUpdates - () https://security.tecno.com/SRC/securityUpdates - Product

11 Mar 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-11 07:15

Updated : 2025-11-13 13:58


NVD link : CVE-2025-2190

Mitre link : CVE-2025-2190

CVE.ORG link : CVE-2025-2190


JSON object : View

Products Affected
CWE
CWE-297

Improper Validation of Certificate with Host Mismatch