CVE-2016-1842
EUVD-2016-293720.05.2016, 10:59
MapKit in Apple iOS before 9.3.2, OS X before 10.11.5, and watchOS before 2.2.1 does not use HTTPS for shared links, which allows remote attackers to obtain sensitive information by sniffing the network for HTTP traffic.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| apple | iphone_os | 𝑥 ≤ 9.3.1 |
| apple | mac_os_x | 𝑥 ≤ 10.11.4 |
| apple | watchos | 𝑥 ≤ 2.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References