2024-07-14 02:06:08 +00:00

106 lines
3.2 KiB
JSON

{
"id": "CVE-2018-4428",
"sourceIdentifier": "product-security@apple.com",
"published": "2020-10-27T20:15:13.627",
"lastModified": "2020-10-30T02:01:20.787",
"vulnStatus": "Analyzed",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "A lock screen issue allowed access to the share function on a locked device. This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 12.1.1. A local attacker may be able to share items from the lock screen."
},
{
"lang": "es",
"value": "Un problema de bloqueo de la pantalla permiti\u00f3 el acceso a la funci\u00f3n share en un dispositivo bloqueado. Este problema se abord\u00f3 al restringir las opciones que son ofrecidas en un dispositivo bloqueado.  Este problema se corrigi\u00f3 en iOS versi\u00f3n 12.1.1. Un atacante local puede ser capaz de compartir elementos desde un bloqueo de la pantalla"
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N",
"attackVector": "LOCAL",
"attackComplexity": "LOW",
"privilegesRequired": "LOW",
"userInteraction": "NONE",
"scope": "UNCHANGED",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"availabilityImpact": "NONE",
"baseScore": 7.1,
"baseSeverity": "HIGH"
},
"exploitabilityScore": 1.8,
"impactScore": 5.2
}
],
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:L/Au:N/C:P/I:P/A:N",
"accessVector": "LOCAL",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "PARTIAL",
"availabilityImpact": "NONE",
"baseScore": 3.6
},
"baseSeverity": "LOW",
"exploitabilityScore": 3.9,
"impactScore": 4.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-noinfo"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*",
"versionEndExcluding": "12.1.1",
"matchCriteriaId": "A79B50D1-F20E-4A84-B75F-D28519FD8266"
}
]
}
]
}
],
"references": [
{
"url": "https://support.apple.com/en-us/HT209340",
"source": "product-security@apple.com",
"tags": [
"Vendor Advisory"
]
}
]
}