Security Advisory

CVE-2012-3724

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2012-09-20 21:00:00
Last updated 2024-08-06 20:13:51
Assigner apple
CVSS score not scored
State PUBLISHED

Description

CFNetwork in Apple iOS before 6 does not properly identify the host portion of a URL, which allows remote attackers to obtain sensitive information by leveraging the construction of an HTTP request with an incorrect hostname derived from a malformed URL.