4.3
CVSSv3

CVE-2016-1864

Published: 19/06/2016 Updated: 01/09/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The XSS auditor in WebKit, as used in Apple iOS prior to 9.3 and Safari prior to 9.1, does not properly handle redirects in block mode, which allows remote malicious users to obtain sensitive information via a crafted URL.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apple safari

apple iphone os