CVE-2015-3756
published 2015-08-16CVE-2015-3756: The Certificate UI in Apple iOS before 8.4.1 does not prevent X.509 certificate acceptance within the lock screen, which allows physically proximate attackers…
PriorityP411low2.1CVSS 2.0
AVLACLAuNCNIPAN
EPSS
0.24%
14.5th percentile
The Certificate UI in Apple iOS before 8.4.1 does not prevent X.509 certificate acceptance within the lock screen, which allows physically proximate attackers to establish arbitrary certificate trust relationships by completing a dialog.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios | — | — |
| apple | iphone_os | <= 8.4 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-f78v-998h-4wvx: The Certificate UI in Apple iOS before 8
ghsa_unreviewed·2022-05-17
CVE-2015-3756 [LOW] GHSA-f78v-998h-4wvx: The Certificate UI in Apple iOS before 8
The Certificate UI in Apple iOS before 8.4.1 does not prevent X.509 certificate acceptance within the lock screen, which allows physically proximate attackers to establish arbitrary certificate trust relationships by completing a dialog.
Apple
CVE-2015-3756: iOS 8.4.1
vendor_apple·CVSS 2.1
CVE-2015-3756 [LOW] CVE-2015-3756: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-3756
Component: CVE-ID
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://lists.apple.com/archives/security-announce/2015/Aug/msg00002.htmlhttp://www.securityfocus.com/bid/76337http://www.securitytracker.com/id/1033275https://support.apple.com/kb/HT205030http://lists.apple.com/archives/security-announce/2015/Aug/msg00002.htmlhttp://www.securityfocus.com/bid/76337http://www.securitytracker.com/id/1033275https://support.apple.com/kb/HT205030
2015-08-16
Published