The document.cookie API implementation in the CFNetwork Cookies subsystem in WebKit in Apple iOS prior to 9 allows remote malicious users to bypass an intended single-cookie restriction via unspecified vectors.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apple iphone os |
||
apple safari |