Security Advisory
CVE-2014-2680
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The update process in Xmind 3.4.1 and earlier allow remote attackers to execute arbitrary code via a man-in-the-middle attack.