CVE Database
/

CVE-2018-0591

Back to search

CVE-2018-0591

Published: May 14, 2018

Modified: Aug 5, 2024

PUBLISHED

Description

The KINEPASS App for Android Ver 3.1.1 and earlier, and for iOS Ver 3.1.2 and earlier do not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

VendorProductVersions

T-JOY CO.,LTD.

KINEPASS App

affected
for Android Ver 3.1.1 and earlier, and for iOS Ver 3.1.2 and earlier

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now