|
252841
|
8.8 |
HIGH
Network
|
certec_edv_gmbh
|
atvise_scada
|
A Header Injection issue was discovered in Certec EDV GmbH atvise scada prior to Version 3.0. An "improper neutralization of HTTP headers for scripting syntax" issue has been identified, which may al…
|
CWE-74
Injection
|
CVE-2017-6031
|
2024-11-21 12:28 |
2017-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252842
|
5.4 |
MEDIUM
Network
|
certec_edv_gmbh
|
atvise_scada
|
A Cross-Site Scripting issue was discovered in Certec EDV GmbH atvise scada prior to Version 3.0. This may allow remote code execution.
|
CWE-79
Cross-site Scripting
|
CVE-2017-6029
|
2024-11-21 12:28 |
2017-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252843
|
5.9 |
MEDIUM
Network
|
rockwellautomation
|
compactlogix_5380_firmware controllogix_5580_firmware
|
A Resource Exhaustion issue was discovered in Rockwell Automation ControlLogix 5580 controllers V28.011, V28.012, and V28.013; ControlLogix 5580 controllers V29.011; CompactLogix 5380 controllers V28…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2017-6024
|
2024-11-21 12:28 |
2017-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252844
|
5.9 |
MEDIUM
Network
|
21st_century_insurance
|
21st_century_insurance
|
The 21st Century Insurance app 10.0.0 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a cra…
|
CWE-295
Improper Certificate Validation
|
CVE-2017-5919
|
2024-11-21 12:28 |
2017-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252845
|
5.9 |
MEDIUM
Network
|
banco_de_costa_rica
|
bcr_movil
|
The Banco de Costa Rica BCR Movil app 3.7 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a…
|
CWE-295
Improper Certificate Validation
|
CVE-2017-5918
|
2024-11-21 12:28 |
2017-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252846
|
5.9 |
MEDIUM
Network
|
america\'s_first_federal_credit_union
|
america\'s_first_fcu_mobile_banking
|
The America's First Federal Credit Union (FCU) Mobile Banking app 3.1.0 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obta…
|
CWE-295
Improper Certificate Validation
|
CVE-2017-5916
|
2024-11-21 12:28 |
2017-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252847
|
5.9 |
MEDIUM
Network
|
emirates_nbd_bank_p.j.s.c
|
emirates_nbd emirates_nbd_ksa
|
The Emirates NBD Bank P.J.S.C Emirates NBD KSA app 3.10.0 through 3.10.4 (UAE) and 2.0.1 through 2.1.0 (KSA) for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middl…
|
CWE-295
Improper Certificate Validation
|
CVE-2017-5915
|
2024-11-21 12:28 |
2017-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252848
|
5.9 |
MEDIUM
Network
|
dotit-corp
|
banque_zitouna
|
The DOT IT Banque Zitouna app 2.1 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted…
|
CWE-295
Improper Certificate Validation
|
CVE-2017-5914
|
2024-11-21 12:28 |
2017-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252849
|
5.9 |
MEDIUM
Network
|
forex
|
tradeking_forex
|
The TradeKing Forex for iPhone app 1.2.1 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a …
|
CWE-295
Improper Certificate Validation
|
CVE-2017-5913
|
2024-11-21 12:28 |
2017-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252850
|
5.9 |
MEDIUM
Network
|
forex
|
forextrader
|
The FOREX.com FOREXTrader for iPhone app 2.9.12 through 2.9.14 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensit…
|
CWE-295
Improper Certificate Validation
|
CVE-2017-5912
|
2024-11-21 12:28 |
2017-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|