Vulnerabilities > Improper Certificate Validation

DATE CVE VULNERABILITY TITLE RISK
2017-05-22 CVE-2017-6988 Improper Certificate Validation vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
network
high complexity
apple CWE-295
5.9
2017-05-22 CVE-2017-2498 Improper Certificate Validation vulnerability in Apple Iphone OS
An issue was discovered in certain Apple products.
network
low complexity
apple CWE-295
7.5
2017-05-15 CVE-2017-8943 Improper Certificate Validation vulnerability in Puma Pumatrac 3.0.2
The PUMA PUMATRAC app 3.0.2 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
network
high complexity
puma CWE-295
5.9
2017-05-15 CVE-2017-8942 Improper Certificate Validation vulnerability in Yottamark Inc. Shopwell - Healthy Diet & Grocery Food Scanner
The YottaMark ShopWell - Healthy Diet & Grocery Food Scanner app 5.3.7 through 5.4.2 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
network
high complexity
yottamark-inc CWE-295
5.9
2017-05-15 CVE-2017-8941 Improper Certificate Validation vulnerability in Interval International Interval International
The Interval International app 3.3 through 3.5.1 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
network
high complexity
interval-international CWE-295
5.9
2017-05-15 CVE-2017-8940 Improper Certificate Validation vulnerability in Zipongo Inc. Healthy Recipes and Grocery Deals 6.2
The Zipongo - Healthy Recipes and Grocery Deals app before 6.3 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
network
high complexity
zipongo-inc CWE-295
5.9
2017-05-15 CVE-2017-8939 Improper Certificate Validation vulnerability in Warnerbros Ellentube 3.1.1/3.1.2/3.1.3
The Warner Bros.
network
high complexity
warnerbros CWE-295
5.9
2017-05-15 CVE-2017-8938 Improper Certificate Validation vulnerability in Radiojavan Radio Javan
The Radio Javan app 9.3.4 through 9.6.1 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
network
high complexity
radiojavan CWE-295
5.9
2017-05-15 CVE-2017-8937 Improper Certificate Validation vulnerability in Life Before US YO. 2.5.8
The Life Before Us Yo app 2.5.8 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
network
high complexity
life-before-us CWE-295
5.9
2017-05-15 CVE-2017-8936 Improper Certificate Validation vulnerability in Changyou Dolphin web Browser 9.23.0/9.23.2
The MoboTap Dolphin Web Browser - Fast Private Internet Search app 9.23.0 through 9.23.2 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
network
high complexity
changyou CWE-295
5.9