SSL Certificate Validation Vulnerability in Pandora iOS App

SSL Certificate Validation Vulnerability in Pandora iOS App

CVE-2017-3194 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:N/A:N

Pandora iOS app prior to version 8.3.2 fails to properly validate SSL certificates provided by HTTPS connections, which may enable an attacker to conduct man-in-the-middle (MITM) attacks.

Learn more about our Cis Benchmark Audit For Apple Ios.