Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Microsoft Outlook.com application before 7.8.2.12.49.7090 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft Outlook.com for Android 加密问题漏洞
Vulnerability Description
Microsoft Outlook.com for Android是美国微软(Microsoft)公司的一套用于Android平台中的邮件客户端软件。 基于Android平台的Microsoft Outlook.com应用程序7.8.2.12.49.6434及之前版本中存在安全漏洞,该漏洞源于程序没有正确验证来自SSL服务器的X.509证书。中间人攻击者可通过特制的证书利用该漏洞伪造服务器,获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A