Apple · Webkit · CVE-2015-5921
**Name of the Vulnerable Software and Affected Versions**
iOS versions prior to 9
**Description**
The issue is related to how WebKit in iOS handles "Content-Disposition: attachment" HTTP headers, which could allow man-in-the-middle attackers to obtain sensitive information. Exploitation of this issue may enable a remote attacker to access protected information by conducting man-in-the-middle attacks.
**Recommendations**
For versions prior to 9, update to iOS version 9 or later to resolve the issue.