This CPE summary could be partial or incomplete. Please contact us for a detailed listing.
Summary
Detail | |||
---|---|---|---|
Vendor | Metroseoul | First view | 2014-10-04 |
Product | Metro News | Last view | 2014-10-04 |
Version | 1.6.5 | Type | Application |
Update | * | ||
Edition | * | ||
Language | * | ||
Sofware Edition | * | ||
Target Software | android | ||
Target Hardware | * | ||
Other | * | ||
CPE Product | cpe:2.3:a:metroseoul:metro_news |
Activity : Overall
Related : CVE
Date | Alert | Description | |
---|---|---|---|
5.4 | 2014-10-04 | CVE-2014-6924 | The Metro News (aka com.netpia.ha.metro) application 1.6.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. |
CWE : Common Weakness Enumeration
% | id | Name |
---|---|---|
100% (1) | CWE-310 | Cryptographic Issues |