Security Advisory

CVE-2016-1782

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-03-24 01:00:00
Last updated 2024-08-05 23:10:38
Assigner apple
CVSS score not scored
State PUBLISHED

Description

WebKit in Apple iOS before 9.3 and Safari before 9.1 does not properly restrict redirects that specify a TCP port number, which allows remote attackers to bypass intended port restrictions via a crafted web site.