ZeroHour

CVE-2016-1763

CVSS 3.0
3.5 low
EPSS
1%p66
Published
()
Modified
Description

Messages in Apple iOS before 9.3 does not ensure that an auto-fill action applies to the intended message thread, which allows remote authenticated users to obtain sensitive information by providing a crafted sms: URL and reading a thread.

Vendors
apple
Products
iphone os
Weakness
CWE-20
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.