Messages in Apple iOS prior to 9.3 does not ensure that an auto-fill action applies to the intended message thread, which allows remote authenticated users to obtain sensitive information by providing a crafted sms: URL and reading a thread.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apple iphone os |