CVE-2014-1976: Yumenomachi Demaecan
Medium severity, CVSS 5.8. EPSS: 0.6% chance of exploitation in the next 30 days.
The Demaecan application 2.1.0 and earlier for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Affected products
- Yumenomachi Demaecan: up to and including 2.1.0; version 2.0.0 only
Published 2014-03-18. Last modified 2026-06-17.