ZeroHour

CVE-2017-2411

CVSS 3.0
5.9 medium
EPSS
<1%p53
Published
()
Modified
Description

In iOS before 11.2, exchange rates were retrieved from HTTP rather than HTTPS. This was addressed by enabling HTTPS for exchange rates.

Vendors
apple
Products
iphone os
Weakness
CWE-254
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.