Security Advisory

CVE-2016-7812

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-08-02 16:00:00
Last updated 2024-08-06 02:04:56
Assigner jpcert
State PUBLISHED

Description

The Bank of Tokyo-Mitsubishi UFJ, Ltd. App for Android ver5.3.1, ver5.2.2 and earlier allow a man-in-the-middle attacker to downgrade the communication between the app and the server from TLS v1.2 to SSL v3.0, which may result in the attacker to eavesdrop on an encrypted communication.