CVE-2015-1126
MEDIUM 4.3EPSS 9.9%
WebKit, as used in Apple iOS before 8.3 and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, does not properly handle the userinfo field in FTP URLs, which allows remote attackers to trigger incorrect resource access via unspecified vectors.
- CVSS v2.0
- 4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N - EPSS
- 9.89% chance of exploitation in the next 30 days, 95th percentile
- Published
- 2015-04-10
- Updated
- 2024-08-06