CVEs Blog | G5 Cyber Security

CVE-2014-5948 – The Obama for America (aka com.barackobama.ofa) application 1.02 for Andr

The Obama for America (aka com.barackobama.ofa) application 1.02 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-5948

Reference (s):

Exit mobile version