CVE-2012-3746Apple Iphone OS vulnerability

CWE-3102 documents2 sources
Severity
4.3MEDIUMNVD
EPSS
0.3%
top 43.74%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 20
Latest updateMay 17

Description

UIWebView in UIKit in Apple iOS before 6 does not properly use the Data Protection feature, which allows context-dependent attackers to obtain cleartext file content by leveraging direct access to a device's filesystem.

CVSS vector

AV:N/AC:M/C:P/I:N/A:NExploitability: 8.6 | Impact: 2.9

Affected Packages1 packages

NVDapple/iphone_os5.1.1+39

🔴Vulnerability Details

1
GHSA
GHSA-6cjr-78qx-g328: UIWebView in UIKit in Apple iOS before 6 does not properly use the Data Protection feature, which allows context-dependent attackers to obtain clearte2022-05-17
CVE-2012-3746 — Apple Iphone OS vulnerability | cvebase