1 results (0.002 seconds)
CVSS: 5.9EPSS: 0%CPEs: 1EXPL: 0

CVE-2014-7538
https://notcve.org/view.php?id=CVE-2014-7538
20 Oct 2014 — The Headlines news India (aka com.dreamstep.wHEADLINESNEWSINDIA) application 0.21.13219.95110 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. La aplicación para Android Headlines news India (también conocido como com.dreamstep.wHEADLINESNEWSINDIA) 0.21.13219.95110 no verifica los certificados X.509 de los servidores SSL, lo que permite a atacantes man-in-the-middle suplantar... • http://www.kb.cert.org/vuls/id/323425 • CWE-310: Cryptographic Issues •