Beveiligingsadvies

CVE-2014-2019

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2014-02-18 11:00:00
Laatst bijgewerkt 2024-08-06 09:58:16
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

The iCloud subsystem in Apple iOS before 7.1 allows physically proximate attackers to bypass an intended password requirement, and turn off the Find My iPhone service or complete a Delete Account action and then associate this service with a different Apple ID account, by entering an arbitrary iCloud Account Password value and a blank iCloud Account Description value.