Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wwvm-wgjm-33r5

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The HTML form implementation in WebKit in Apple iOS before 9 does not prevent QuickType access to the final character of a password, which might make it easier for remote attackers to discover a password by leveraging a later prediction containing that character.

The HTML form implementation in WebKit in Apple iOS before 9 does not prevent QuickType access to the final character of a password, which might make it easier for remote attackers to discover a password by leveraging a later prediction containing that character.

EPSS

Процентиль: 59%
0.00388
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
больше 10 лет назад

The HTML form implementation in WebKit in Apple iOS before 9 does not prevent QuickType access to the final character of a password, which might make it easier for remote attackers to discover a password by leveraging a later prediction containing that character.

fstec
больше 10 лет назад

Уязвимость операционной системы iOS, позволяющая нарушителю получить пароль пользователя

EPSS

Процентиль: 59%
0.00388
Низкий

Дефекты

CWE-200