Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

William Redwood

Researcher fromHampton School
#53386of 53,633
2.1Total CVSS
Vulnerabilities · 1
PT-2015-2452
2.1
2015-10-23
Apple · Ios · CVE-2015-7000
**Name of the Vulnerable Software and Affected Versions** Apple iOS versions prior to 9.1 **Description** The issue is related to the Notification Center component in the iOS operating system, which lacks protection for certain data. This can be exploited by a local attacker to access protected information by viewing call and message notifications on the lock screen. Specifically, the problem arises when changes to the "Show on Lock Screen" settings are mishandled, allowing an attacker to obtain sensitive information by looking for notifications on the lock screen soon after a setting was disabled. **Recommendations** For Apple iOS versions prior to 9.1, update to version 9.1 or later to resolve the issue. As a temporary workaround, consider disabling the "Show on Lock Screen" feature for sensitive information, such as phone calls and messages, to minimize the risk of exploitation. Restrict access to the lock screen to prevent physically proximate attackers from viewing notifications.