Security Advisory

CVE-2015-1126

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2015-04-10 14:00:00
Last updated 2024-08-06 04:33:20
Assigner apple
State PUBLISHED

Description

WebKit, as used in Apple iOS before 8.3 and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, does not properly handle the userinfo field in FTP URLs, which allows remote attackers to trigger incorrect resource access via unspecified vectors.