CVE-2023-33757: Splicecom Ipcs
Medium severity, CVSS 5.9. EPSS: 0.3% chance of exploitation in the next 30 days.
A lack of SSL certificate validation in Splicecom iPCS (iOS App) v1.3.4, iPCS2 (iOS App) v2.8 and before, and iPCS (Android App) v1.8.5 and before allows attackers to eavesdrop on communications via a man-in-the-middle attack.
Affected products
- Splicecom Ipcs: up to and including 1.8.5; version 1.3.4 only
- Splicecom IPCS2: up to and including 2.8
Published 2024-01-25. Last modified 2026-06-17.