PT-2020-16840 · Apple · Ios+1
Connor Ford
+1
·
Published
2020-12-08
·
Updated
2021-07-21
·
CVE-2020-27902
CVSS v3.1
4.6
Medium
| Vector | AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
iOS versions prior to 14.2
iPadOS versions prior to 14.2
Description
An authentication issue was addressed with improved state management, allowing a person with physical access to an iOS device to potentially access stored passwords without authentication.
Recommendations
For iOS versions prior to 14.2, update to iOS 14.2 or later to resolve the issue.
For iPadOS versions prior to 14.2, update to iPadOS 14.2 or later to resolve the issue.
Fix
Missing Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ios
Ipados