Messages in Apple iOS before 9.3 does not ensure that an...
Low severity
Unreviewed
Published
May 17, 2022
to the GitHub Advisory Database
•
Updated Jan 27, 2023
Description
Published by the National Vulnerability Database
Mar 24, 2016
Published to the GitHub Advisory Database
May 17, 2022
Last updated
Jan 27, 2023
Messages in Apple iOS before 9.3 does not ensure that an auto-fill action applies to the intended message thread, which allows remote authenticated users to obtain sensitive information by providing a crafted sms: URL and reading a thread.
References