CVE-2013-4616
published 2013-06-18CVE-2013-4616: The WifiPasswordController generateDefaultPassword method in Preferences in Apple iOS 6 and earlier relies on the UITextChecker suggestWordInLanguage method…
PriorityP421medium5.8CVSS 2.0
AVAACLAuNCPIPAP
EPSS
0.93%
57.1th percentile
The WifiPasswordController generateDefaultPassword method in Preferences in Apple iOS 6 and earlier relies on the UITextChecker suggestWordInLanguage method for selection of Wi-Fi hotspot WPA2 PSK passphrases, which makes it easier for remote attackers to obtain access via a brute-force attack that leverages the insufficient number of possible passphrases.
Affected
42 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | iphone_os | <= 6.0 | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
CVSS provenance
nvdv2.05.8MEDIUMAV:A/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jjrj-5fqf-7f83: The WifiPasswordController generateDefaultPassword method in Preferences in Apple iOS 6 and earlier relies on the UITextChecker suggestWordInLanguage
ghsa_unreviewed·2022-05-17
CVE-2013-4616 [MEDIUM] GHSA-jjrj-5fqf-7f83: The WifiPasswordController generateDefaultPassword method in Preferences in Apple iOS 6 and earlier relies on the UITextChecker suggestWordInLanguage
The WifiPasswordController generateDefaultPassword method in Preferences in Apple iOS 6 and earlier relies on the UITextChecker suggestWordInLanguage method for selection of Wi-Fi hotspot WPA2 PSK passphrases, which makes it easier for remote attackers to obtain access via a brute-force attack that leverages the insufficient number of possible passphrases.
OSV
python2.7, python3.2, python3.4 vulnerabilities
osv·2015-06-25·CVSS 7.5
CVE-2013-1752 python2.7, python3.2, python3.4 vulnerabilities
python2.7, python3.2, python3.4 vulnerabilities
It was discovered that multiple Python protocol libraries incorrectly
limited certain data when connecting to servers. A malicious ftp, http,
imap, nntp, pop or smtp server could use this issue to cause a denial of
service. (CVE-2013-1752)
It was discovered that the Python xmlrpc library did not limit unpacking
gzip-compressed HTTP bodies. A malicious server could use this issue to
cause a denial of service. (CVE-2013-1753)
It was discovered that the Python json module incorrectly handled a certain
argument. An attacker could possibly use this issue to read arbitrary
memory and expose sensitive information. This issue only affected Ubuntu
12.04 LTS and Ubuntu 14.04 LTS. (CVE-2014-4616)
It was discovered that the Python CGIHTTPServer incor
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://lists.apple.com/archives/security-announce/2013/Sep/msg00006.htmlhttp://lists.owasp.org/pipermail/owasp-mobile-security-project/2013-June/000640.htmlhttp://secunia.com/advisories/54886http://support.apple.com/kb/HT5934http://www.securitytracker.com/id/1029054http://www1.cs.fau.de/filepool/projects/hotspot/hotspot.pdfhttp://www1.cs.fau.de/hotspothttp://lists.apple.com/archives/security-announce/2013/Sep/msg00006.htmlhttp://lists.owasp.org/pipermail/owasp-mobile-security-project/2013-June/000640.htmlhttp://secunia.com/advisories/54886http://support.apple.com/kb/HT5934http://www.securitytracker.com/id/1029054http://www1.cs.fau.de/filepool/projects/hotspot/hotspot.pdfhttp://www1.cs.fau.de/hotspot
2013-06-18
Published