Paypal

Paypal

3 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.9%
  • Published 27.04.2018 16:29:00
  • Last modified 21.11.2024 02:00:29

WebHybridClient.java in PayPal 5.3 and earlier for Android ignores SSL errors, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information.

  • EPSS 1.4%
  • Published 27.04.2018 16:29:00
  • Last modified 21.11.2024 02:00:29

The WebHybridClient class in PayPal 5.3 and earlier for Android allows remote attackers to execute arbitrary JavaScript on the system.

Exploit
  • EPSS 0.13%
  • Published 04.11.2012 22:55:04
  • Last modified 11.04.2025 00:51:21

The PayPal module in Ubercart does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbi...