CVE-2014-5704 PUBLISHED CVSS 5.400000095367432 MEDIUM

The DISH Anywhere (aka com.sm.SlingGuide.Dish) application 3.5.10 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

EPSS 0.05% · 15.5th percentile

Risk Scores

CVSS v2.0
5.400000095367432
EPSS Score
0.05%
15.5th percentile

Affected Products

VendorProductVersions
n/an/an/a
dishdish_anywhere3.5.10

Timeline

References

Open in Interactive Console →