PANDA SM MANAGER IOS APPLICATION
-MITM SSL CERTIFICATE VULNERABILITY
•"Panda Systems Management is the new way to manage and monitor IT systems."
"Inventory, monitoring, management, remote control and reporting... All from a single Web-
based console"
(https://itunes.apple.com/us/app/panda-sm-manager/id672205099)
•Timeline–Almost 1 Year (!)
•July 19, 2015 -Notified Panda Security via
[email protected], e-mail bounced
July 20, 2015 -Resent vulnerability report to
[email protected]&
[email protected]
July 20, 2015 -Panda Security responded stating they will investigate
July 31, 2015 -Asked for an update on their investigation
August 3, 2015 -Panda Security responded stating that the issue has been escalated and is
still being reviewed
August 14, 2015 -Asked for an update on their investigation
October 16, 2015 -Asked for an update on their investigation
•… NO ANSWER …
March 1, 2016 -Panda Security released version 2.6.0 which resolves this vulnerability