PT-2014-4053 · Apple · Tv+1

Published

2014-03-14

·

Updated

2019-03-08

·

CVE-2014-1267

CVSS v2.0

5.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Apple iOS versions prior to 7.1 Apple TV versions prior to 6.1
Description The issue concerns the Configuration Profiles component, which fails to properly evaluate the expiration date of a mobile configuration profile. This allows attackers to bypass intended access restrictions by using a profile after its expiration date has passed.
Recommendations For Apple iOS versions prior to 7.1, update to version 7.1 or later to resolve the issue. For Apple TV versions prior to 6.1, update to version 6.1 or later to resolve the issue.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2014-1267

Affected Products

Tv
Ios