Medium severity6.5NVD Advisory· Published Mar 9, 2026· Updated Jun 17, 2026
CVE-2026-3822
CVE-2026-3822
Description
Taipower APP for Andorid developed by Taipower has an Improper Certificate Validation vulnerability. When establishing an HTTPS connection with the server, the application fails to verify the server-side TLS/SSL certificate. This flaw allows an unauthenticated remote attackers to exploit the vulnerability to perform a Man-in-the-Middle (MITM) attack to read and tamper with network packets.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:taipower:taipower_app:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:taipower:taipower_app:*:*:*:*:*:*:*:*range: <=3.4.4
- (no CPE)
- Taipower/Taipower APPv5Range: 0
Patches
Vulnerability mechanics
References
2- www.twcert.org.tw/en/cp-139-10751-23871-2.htmlnvdThird Party Advisory
- www.twcert.org.tw/tw/cp-132-10750-3735f-1.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.