Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Filedescriptior

#51722of 53,622
4.3Total CVSS
Vulnerabilities · 1
PT-2015-2084
4.3
2015-09-18
Apple · Webkit · CVE-2015-5826
**Name of the Vulnerable Software and Affected Versions** Apple iOS versions prior to 9 **Description** The issue is related to the WebKit component in Apple iOS, which has inadequate access control. This allows remote attackers to bypass the Same Origin Policy by creating a crafted web site. The problem stems from WebKit not properly selecting the cases in which a Cascading Style Sheets (CSS) document is required to have the text/css content type. **Recommendations** For Apple iOS versions prior to 9, update to a version 9 or later to resolve the issue. As a temporary workaround, consider restricting access to potentially malicious web sites to minimize the risk of exploitation.