PT-2008-5810 · Apple · Iphone
Publicado
2008-10-17
·
Atualizado
2017-08-08
·
CVE-2008-4593
CVSS v2.0
1.2
Baixa
| Vetor | AV:L/AC:H/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Apple iPhone version 2.1 with firmware 5F136
Description
The issue allows physically proximate attackers to obtain sensitive information by performing an Emergency Call tap and then reading SMS messages on the device screen when Require Passcode is enabled and Show SMS Preview is disabled.
Recommendations
For Apple iPhone version 2.1 with firmware 5F136, consider enabling Show SMS Preview or disabling the Emergency Call feature as a temporary workaround to minimize the risk of exploitation.
Correção
Information Disclosure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Iphone