CVE-2014-5239
The Microsoft Outlook.com application before 7.8.2.12.49.7090 for Android does not verify X.509 certificates from SSL se
The Microsoft Outlook.com application before 7.8.2.12.49.7090 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
MEDIUM · CVSS 4
EPSS 0.05348
Monitor
- EPSS percentile: top 10% of all CVEs by exploitation likelihood
Sigma rules0
YARA rules0