CVE-2008-3876

CWE-2645 documents4 sources
Severity
1.9LOW
EPSS
0.1%
top 80.61%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 2
Latest updateMay 2

Description

Apple iPhone 2.0.2, in some configurations, allows physically proximate attackers to bypass intended access restrictions, and obtain sensitive information or make arbitrary use of the device, via an Emergency Call tap and a Home double-tap, followed by a tap of any contact's blue arrow.

CVSS vector

AV:L/AC:M/C:P/I:N/A:NExploitability: 3.4 | Impact: 2.9

Affected Packages1 packages

NVDapple/iphone2.0.2

🔴Vulnerability Details

2
GHSA
GHSA-gq2r-cfxv-jhvj: Apple iPhone 22022-05-02
CVEList
CVE-2008-3876: Apple iPhone 22008-09-02

💥Exploits & PoCs

2
Exploit-DB
SmarterMail 7.1.3876 - Directory Traversal2010-09-19
Exploit-DB
Apple Mac OSX - 'mount_smbfs' Local Stack Buffer Overflow2007-12-19
CVE-2008-3876 (LOW CVSS 1.9) | Apple iPhone 2.0.2 | cvebase.io