DMMFX Trade for Android 1.5.0 and earlier, DMMFX DEMO Trade for Android 1.5.0 and earlier, and GAITAMEJAPAN FX Trade for Android 1.4.0 and earlier do not verify SSL certificates.
References
Link | Resource |
---|---|
https://jvn.jp/en/jp/JVN40898764/995849/index.html | Third Party Advisory VDB Entry |
http://www.gaitamejapan.com/support/news/2016/2016053001/ | Third Party Advisory |
http://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000092.html | Third Party Advisory VDB Entry |
http://jvn.jp/en/jp/JVN40898764/index.html | Third Party Advisory VDB Entry |
http://fx.dmm.com/information/press/2016/2016053001/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2017-04-20 11:59
Updated : 2017-04-26 12:33
NVD link : CVE-2016-4818
Mitre link : CVE-2016-4818
JSON object : View
CWE
CWE-295
Improper Certificate Validation
Products Affected
dmm
- gaitamejapan_fx_trade
- dmmfx_demo_trade
- dmmfx_trade