Vulnerabilities > Timedoctor

DATE CVE VULNERABILITY TITLE RISK
2015-08-07 CVE-2015-4674 Insufficient Verification of Data Authenticity vulnerability in Timedoctor 1.4.72.3
The autoupdate implementation in TimeDoctor Pro 1.4.72.3 on Windows relies on unsigned installer files that are retrieved without use of SSL, which makes it easier for man-in-the-middle attackers to execute arbitrary code via a crafted file.
network
timedoctor CWE-345
critical
9.3