5.8
CVSSv2

CVE-2015-7023

Published: 23/10/2015 Updated: 24/12/2016
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:P

Vulnerability Summary

CFNetwork in Apple iOS prior to 9.1 and OS X prior to 10.11.1 does not properly consider the uppercase-versus-lowercase distinction during cookie parsing, which allows remote web servers to overwrite cookies via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

apple mac os x

apple iphone os