Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Merchant_sdk
(Paypal)Repositories | https://github.com/paypal/SDKs |
#Vulnerabilities | 1 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2012-11-04 | CVE-2012-5787 | The PayPal merchant SDK does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate. | Merchant_sdk | N/A |