PT-2020-20858 · Apple · Ios+2
C0D3G33K
+1
·
Published
2020-10-16
·
Updated
2023-01-09
·
CVE-2020-9911
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
iOS versions prior to 13.6
iPadOS versions prior to 13.6
Safari versions prior to 13.1.2
Description
A logic issue was addressed with improved restrictions. The issue may allow a remote attacker to bypass the Same Origin Policy in Safari Reader mode.
Recommendations
For iOS versions prior to 13.6, update to iOS 13.6 or later.
For iPadOS versions prior to 13.6, update to iPadOS 13.6 or later.
For Safari versions prior to 13.1.2, update to Safari 13.1.2 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Safari
Ios
Ipados