Vulnerabilities > Improper Certificate Validation

DATE CVE VULNERABILITY TITLE RISK
2017-04-21 CVE-2016-1198 Improper Certificate Validation vulnerability in NTT Photopt 1.0.0/1.1.0
Photopt for Android before 2.0.1 does not verify SSL certificates.
network
high complexity
ntt CWE-295
5.9
2017-04-21 CVE-2016-1186 Improper Certificate Validation vulnerability in Cybozu Kintone
Kintone mobile for Android 1.0.0 through 1.0.5 does not verify SSL server certificates.
network
high complexity
cybozu CWE-295
5.9
2017-04-21 CVE-2016-4840 Improper Certificate Validation vulnerability in Toshiba Coordinate Plus 1.0.2
Coordinate Plus App for Android 1.0.2 and earlier and Coordinate Plus App for iOS 1.0.2 and earlier do not verify SSL certificates.
network
high complexity
toshiba CWE-295
5.9
2017-04-21 CVE-2016-4832 Improper Certificate Validation vulnerability in Aeon Waon 1.4.1
WAON "Service Application" for Android 1.4.1 and earlier does not verify SSL certificates.
network
high complexity
aeon CWE-295
5.9
2017-04-21 CVE-2016-4830 Improper Certificate Validation vulnerability in Akindo-Sushiro Sushiro
Sushiro App for iOS 2.1.16 and earlier and Sushiro App for Android 2.1.16.1 and earlier do not verify SSL certificates.
network
high complexity
akindo-sushiro CWE-295
5.9
2017-04-21 CVE-2016-4829 Improper Certificate Validation vulnerability in DMM PPV Play Player 1.2.0/2.1.2
DMM Movie Player App for Android before 1.2.1, and DMM Movie Player App for iPhone/iPad before 2.1.3 does not verify SSL certificates.
network
high complexity
dmm CWE-295
5.9
2017-04-21 CVE-2016-1184 Improper Certificate Validation vulnerability in Tokyostarbank Tokyo Star Bank 1.3
Tokyo Star bank App for Android before 1.4 and Tokyo Star bank App for iOS before 1.4 do not validate SSL certificates.
network
high complexity
tokyostarbank CWE-295
5.9
2017-04-21 CVE-2016-1148 Improper Certificate Validation vulnerability in Photosynth Akerun 1.2.3
Akerun - Smart Lock Robot App for iOS before 1.2.4 does not verify SSL certificates.
network
high complexity
photosynth CWE-295
8.1
2017-04-20 CVE-2017-2784 Improper Certificate Validation vulnerability in ARM Mbed TLS
An exploitable free of a stack pointer vulnerability exists in the x509 certificate parsing code of ARM mbed TLS before 1.3.19, 2.x before 2.1.7, and 2.4.x before 2.4.2.
network
high complexity
arm CWE-295
8.1
2017-04-20 CVE-2016-4818 Improper Certificate Validation vulnerability in DMM products
DMMFX Trade for Android 1.5.0 and earlier, DMMFX DEMO Trade for Android 1.5.0 and earlier, and GAITAMEJAPAN FX Trade for Android 1.4.0 and earlier do not verify SSL certificates.
network
high complexity
dmm CWE-295
5.9