Biometrical Liveness Authentication Bypass in Aware Mobile Liveness 2.2.1 SDK 2.2.0 for Knomi

Biometrical Liveness Authentication Bypass in Aware Mobile Liveness 2.2.1 SDK 2.2.0 for Knomi

CVE-2019-9196 · MEDIUM Severity

AV:N/AC:L/AU:N/C:N/I:P/A:N

The Face authentication component in Aware mobile liveness 2.2.1 sdk 2.2.0 for Knomi allows a Biometrical Liveness authentication bypass via parameter tampering of the /knomi/analyze security_level field.

Learn more about our Mobile App Penetration Testing.