Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xh3j-cw8c-mh94

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Photos in Apple iOS before 4.2 enables support for HTTP Basic Authentication over an unencrypted connection, which allows man-in-the-middle attackers to read MobileMe account passwords by spoofing a MobileMe Gallery server during a "Send to MobileMe" action.

Photos in Apple iOS before 4.2 enables support for HTTP Basic Authentication over an unencrypted connection, which allows man-in-the-middle attackers to read MobileMe account passwords by spoofing a MobileMe Gallery server during a "Send to MobileMe" action.

EPSS

Процентиль: 64%
0.0047
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
около 15 лет назад

Photos in Apple iOS before 4.2 enables support for HTTP Basic Authentication over an unencrypted connection, which allows man-in-the-middle attackers to read MobileMe account passwords by spoofing a MobileMe Gallery server during a "Send to MobileMe" action.

EPSS

Процентиль: 64%
0.0047
Низкий

Дефекты

CWE-200