CVE-2012-1244

N/A Unknown
Published: April 27, 2012 Modified: April 29, 2026
View on NVD

Description

The NTT DOCOMO sp mode mail application 5400 and earlier for Android does not properly verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://jvn.jp/en/jp/JVN82029095/index.html
Source: vultures@jpcert.or.jp
http://jvndb.jvn.jp/jvndb/JVNDB-2012-000037
Source: vultures@jpcert.or.jp
http://osvdb.org/81629
Source: vultures@jpcert.or.jp
http://secunia.com/advisories/48955
Source: vultures@jpcert.or.jp
http://www.securityfocus.com/bid/53254
Source: vultures@jpcert.or.jp
http://jvn.jp/en/jp/JVN82029095/index.html
Source: af854a3a-2127-422b-91ae-364da2661108
http://jvndb.jvn.jp/jvndb/JVNDB-2012-000037
Source: af854a3a-2127-422b-91ae-364da2661108
http://osvdb.org/81629
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/48955
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/53254
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/75159
Source: af854a3a-2127-422b-91ae-364da2661108

12 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
0.7%
47th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

nttdocomo