Security Advisory

CVE-2014-6970

5.4

Vulnerability Description

The North American Ismaili Games (aka hr.apps.n166983741) application 5.26.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Published Date October 16, 2014
Official Source NIST NVD Advisory