Insecure SSL Certificate Verification in First Security Bank Sleepy Eye Mobile App 3.0.0 for iOS

Insecure SSL Certificate Verification in First Security Bank Sleepy Eye Mobile App 3.0.0 for iOS

CVE-2017-9565 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:N/A:N

The first-security-bank-sleepy-eye-mobile/id870531890 app 3.0.0 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

Learn more about our Cis Benchmark Audit For Apple Ios.