CVE-2018-4387Sensitive Information Exposure in Apple Iphone OS

Severity
2.4LOWNVD
EPSS
0.1%
top 82.28%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 3
Latest updateMay 14

Description

A lock screen issue allowed access to photos via Reply With Message on a locked device. This issue was addressed with improved state management. This issue affected versions prior to iOS 12.1.

CVSS vector

CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:NExploitability: 0.9 | Impact: 1.4

Affected Packages2 packages

NVDapple/iphone_os< 12.1
Appleapple/ios12.1

🔴Vulnerability Details

1
GHSA
GHSA-4c2c-9xm6-98h9: A lock screen issue allowed access to photos via Reply With Message on a locked device2022-05-14

📋Vendor Advisories

1
Apple
CVE-2018-4387: iOS 12.12018-10-30