The ce4arab market (aka com.dreamstep.wce4arabmarket) application 0.12.13093.40460 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ce4arab_market | Al_3azmi | 0.12.13093.40460 (including) | 0.12.13093.40460 (including) |