DMMFX Trade for Android 1.5.0 and earlier, DMMFX DEMO Trade for Android 1.5.0 and earlier, and GAITAMEJAPAN FX Trade for Android 1.4.0 and earlier do not verify SSL certificates.
References
| Link | Resource |
|---|---|
| http://fx.dmm.com/information/press/2016/2016053001/ | Vendor Advisory |
| http://jvn.jp/en/jp/JVN40898764/index.html | Third Party Advisory VDB Entry |
| http://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000092.html | Third Party Advisory VDB Entry |
| http://www.gaitamejapan.com/support/news/2016/2016053001/ | Third Party Advisory |
| https://jvn.jp/en/jp/JVN40898764/995849/index.html | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2017-04-20 18:59
Updated : 2017-04-26 19:33
NVD link : CVE-2016-4818
Mitre link : CVE-2016-4818
CVE.ORG link : CVE-2016-4818
JSON object : View
Products Affected
dmm
- dmmfx_demo_trade
- dmmfx_trade
- gaitamejapan_fx_trade
CWE
CWE-295
Improper Certificate Validation
