Security Advisory

CVE-2016-4758

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2016-09-25 10:00:00
Last updated 2024-08-06 00:39:26
Assigner apple
State PUBLISHED

Description

WebKit in Apple iOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 does not properly restrict access to the location variable, which allows remote attackers to obtain sensitive information via a crafted web site.