Vulnerabilities
Vulnerable Software
Sparkpay:  >> Capital One Spark  Security Vulnerabilities
The Capital One Spark Pay (aka com.capitalone.sparkpay) application 0.9.81 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
CVSS Score
5.4
EPSS Score
0.0
Published
2014-09-11


Contact Us

Shodan ® - All rights reserved