Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Coles Credit Cards Subscribe
Filtered by product Coles Credit Card App
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-5562 1 Coles Credit Cards 1 Coles Credit Card App 2014-09-09 5.4 MEDIUM N/A
The Coles Credit Card App (aka au.com.colesfinancialservices.mobile) application 1.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.