5.5
CVSSv3

CVE-2019-7289

Published: 18/12/2019 Updated: 24/08/2020
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in Shortcuts 2.1.3 for iOS. A local user may be able to view senstive user information.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apple shortcuts

Mailing Lists

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 APPLE-SA-2019-2-07-3 Shortcuts 213 for iOS Shortcuts 213 for iOS is now available and addresses the following: Shortcuts Available for: Shortcuts 212 for iOS Impact: A local user may be able to view senstive user information Description: A parsing issue in the handling of directory paths was ...

Github Repositories

Collection of (at time of release) iOS bugs I found

plata o plomo Plata O Plomo (Spanish: Silver or Lead) is a term used in Latin America for when someone is forced to accept a bribe He or she can either accept the bribe or get a lead bullet in the head This repository contains minor bugs and vulnerabilities that I found in iOS userland iBooks Type Confusion (Writeup) (Poc) A type confusion vulnerability in iBooks may lead to