Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rqhc-47vh-6vc7

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Identity Services in Apple iOS before 6.1 does not properly handle validation failures of AppleID certificates, which might allow physically proximate attackers to bypass authentication by leveraging an incorrect assignment of an empty string value to an AppleID.

Identity Services in Apple iOS before 6.1 does not properly handle validation failures of AppleID certificates, which might allow physically proximate attackers to bypass authentication by leveraging an incorrect assignment of an empty string value to an AppleID.

EPSS

Процентиль: 10%
0.00035
Низкий

Дефекты

CWE-20

Связанные уязвимости

nvd
около 13 лет назад

Identity Services in Apple iOS before 6.1 does not properly handle validation failures of AppleID certificates, which might allow physically proximate attackers to bypass authentication by leveraging an incorrect assignment of an empty string value to an AppleID.

EPSS

Процентиль: 10%
0.00035
Низкий

Дефекты

CWE-20