René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

104 lines
3.2 KiB
JSON

{
"id": "CVE-2013-0963",
"sourceIdentifier": "product-security@apple.com",
"published": "2013-01-29T05:58:54.900",
"lastModified": "2013-03-16T03:39:45.507",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Identity Services in Apple iOS before 6.1 does not properly handle validation failures of AppleID certificates, which might allow physically proximate attackers to bypass authentication by leveraging an incorrect assignment of an empty string value to an AppleID."
},
{
"lang": "es",
"value": "Identity Services en Apple iOS v6.1 no maneja adecuadamente los fallos de validaci\u00f3n de los certificados AppleID, que podr\u00eda permitir a atacantes f\u00edsicamente cercanos evitar la autenticaci\u00f3n aprovechando una asignaci\u00f3n incorrecta de un valor de cadena vac\u00edo en un AppleID."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:L/Au:N/C:N/I:P/A:N",
"accessVector": "LOCAL",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "NONE",
"integrityImpact": "PARTIAL",
"availabilityImpact": "NONE",
"baseScore": 2.1
},
"baseSeverity": "LOW",
"exploitabilityScore": 3.9,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-20"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*",
"versionEndIncluding": "6.0.2",
"matchCriteriaId": "0FD52712-0484-421B-A5DD-2CF0B4C027BD"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:apple:iphone_os:6.0:*:*:*:*:*:*:*",
"matchCriteriaId": "DEE0068D-C699-4646-9658-610409925A79"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:apple:iphone_os:6.0.1:*:*:*:*:*:*:*",
"matchCriteriaId": "87C215DD-BC98-4283-BF13-69556EF7CB78"
}
]
}
]
}
],
"references": [
{
"url": "http://lists.apple.com/archives/security-announce/2013/Jan/msg00000.html",
"source": "product-security@apple.com",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://lists.apple.com/archives/security-announce/2013/Mar/msg00002.html",
"source": "product-security@apple.com"
},
{
"url": "http://support.apple.com/kb/HT5642",
"source": "product-security@apple.com",
"tags": [
"Vendor Advisory"
]
}
]
}