PT-2015-3133 · Apple · Safari+1
Xisigr
·
Published
2015-12-11
·
Updated
2016-12-07
·
CVE-2015-7093
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Safari in Apple iOS versions prior to 9.2
Description
The issue allows remote attackers to spoof a URL in the user interface via a crafted web site. This is due to insufficient input validation in the Safari browser interface. Exploitation of the issue may allow a remote attacker to substitute a URL using a specially formed website.
Recommendations
For versions prior to 9.2, update to version 9.2 or later to resolve the issue.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Safari
Ios