CVE-2014-5693

The Slots Vacation - FREE Slots (aka com.scopely.slotsvacation) application 1.47.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Configurations

Configuration 1 (hide)

cpe:2.3:a:withbuddies:slots_vacation_-_free_slots_:1.47.2:*:*:*:*:android:*:*

History

No history.

Information

Published : 2014-09-09 10:55

Updated : 2024-02-28 12:20


NVD link : CVE-2014-5693

Mitre link : CVE-2014-5693

CVE.ORG link : CVE-2014-5693


JSON object : View

Products Affected

withbuddies

  • slots_vacation_-_free_slots_
CWE
CWE-310

Cryptographic Issues