PT-2013-5395 · Apple · Ios+1
Ben Toews
·
Published
2013-09-19
·
Updated
2014-10-24
·
CVE-2013-5150
CVSS v2.0
1.9
Low
| Vector | AV:L/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Apple iOS versions prior to 7
Description
The issue concerns the history-clearing feature in Safari, which does not properly clear the back/forward history of an open tab. This allows physically proximate attackers to obtain sensitive information by accessing an unattended workstation.
Recommendations
For versions prior to 7, consider manually clearing the browser history after each use to minimize the risk of sensitive information exposure.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Safari
Ios