This CPE summary could be partial or incomplete. Please contact us for a detailed listing.
Summary
Detail | |||
---|---|---|---|
Vendor | 1800contacts | First view | 2014-09-08 |
Product | 1800contacts App | Last view | 2014-09-08 |
Version | 2.7.0 | Type | Application |
Update | * | ||
Edition | * | ||
Language | * | ||
Sofware Edition | * | ||
Target Software | android | ||
Target Hardware | * | ||
Other | * | ||
CPE Product | cpe:2.3:a:1800contacts:1800contacts_app |
Activity : Overall
Related : CVE
Date | Alert | Description | |
---|---|---|---|
5.4 | 2014-09-08 | CVE-2014-5601 | The 1800CONTACTS App (aka com.contacts1800.ecomapp) application 2.7.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. |
CWE : Common Weakness Enumeration
% | id | Name |
---|---|---|
100% (1) | CWE-310 | Cryptographic Issues |