CVE-2015-3684
03.07.2015, 01:59
The HTTPAuthentication implementation in CFNetwork in Apple iOS before 8.4 and OS X before 10.10.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted credentials in a URL.Enginsight
Vendor | Product | Version |
---|---|---|
apple | mac_os_x | 𝑥 ≤ 10.10.3 |
apple | iphone_os | 𝑥 ≤ 8.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References