CVE-2019-6032: Ntv News 24

High severity, CVSS 7.4. EPSS: 0.5% chance of exploitation in the next 30 days.

The NTV News24 prior to Ver.3.0.0 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

Affected products

  • Ntv News 24: before 3.0.0 (fixed in 3.0.0)

Published 2019-12-26. Last modified 2026-06-17.