CVE-2013-4700
21.08.2013, 16:55
The Yahoo! Japan Shopping application 1.4 and earlier for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.Enginsight
Vendor | Product | Version |
---|---|---|
yahoo | japan_shopping | 𝑥 ≤ 1.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration