Mobaoku-Auction&Flea Market App for iOS versions prior to 5.5.16 improperly verifies server certificates, which may allow an attacker to eavesdrop on an encrypted communication via a man-in-the-middle attack.
The product does not validate, or incorrectly validates, a certificate.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mobaoku-auction_&_flea_market | Dena | * | 5.5.16 (excluding) |