CVE-2014-4374
18.09.2014, 10:55
NSXMLParser in Foundation in Apple iOS before 8 allows attackers to read arbitrary files via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.Enginsight
Vendor | Product | Version |
---|---|---|
apple | mac_os_x | 𝑥 ≤ 10.9.4 |
apple | iphone_os | 𝑥 ≤ 7.1.2 |
apple | iphone_os | 7.0 |
apple | iphone_os | 7.0.1 |
apple | iphone_os | 7.0.2 |
apple | iphone_os | 7.0.3 |
apple | iphone_os | 7.0.4 |
apple | iphone_os | 7.0.5 |
apple | iphone_os | 7.0.6 |
apple | iphone_os | 7.1 |
apple | iphone_os | 7.1.1 |
𝑥
= Vulnerable software versions
References