← Volver a CVEs
CVE-2017-5915
N/ADescripcion
The Emirates NBD Bank P.J.S.C Emirates NBD KSA app 3.10.0 through 3.10.4 (UAE) and 2.0.1 through 2.1.0 (KSA) for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Detalles CVE
Puntuacion CVSS v3.1N/A
Publicado5/5/2017
Ultima modificacion4/20/2025
Fuentenvd
Avistamientos honeypot0
Productos afectados
emirates_nbd_bank_p.j.s.c:emirates_nbdemirates_nbd_bank_p.j.s.c:emirates_nbd_ksa
Debilidades (CWE)
CWE-295
Referencias
https://medium.com/%40chronic_9612/follow-up-76-popular-apps-confirmed-vulnerable-to-silent-interception-of-tls-protected-data-64185035029f(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.