Vulnerabilities > Yodobashi

DATE CVE VULNERABILITY TITLE RISK
2020-09-09 CVE-2020-5627 Open Redirect vulnerability in Yodobashi 1.2.1.0/1.4.4/1.8.7
Yodobashi App for Android versions 1.8.7 and earlier allows remote attackers to lead a user to access an arbitrary website via the vulnerable App.
network
low complexity
yodobashi CWE-601
6.1
2018-01-12 CVE-2015-2981 Improper Certificate Validation vulnerability in Yodobashi 1.2.1.0
The Yodobashi App for Android 1.2.1.0 and earlier does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
network
high complexity
yodobashi CWE-295
5.9