CVE Published: 15/12/2017 |
CVE Updated: 05/08/2024 |
CVE Year: 2017 Source: certcc |
Vendor: Pandora Media, Inc. |
Product: Pandora iOS App Status : PUBLISHED
CVE-2017-3194 Description
Pandora iOS app prior to version 8.3.2 fails to properly validate SSL certificates provided by HTTPS connections, which may enable an attacker to conduct man-in-the-middle (MITM) attacks.