CVE-2014-2019 - CERT CVE
ID CVE-2014-2019
Sažetak The iCloud subsystem in Apple iOS before 7.1 allows physically proximate attackers to bypass an intended password requirement, and turn off the Find My iPhone service or complete a Delete Account action and then associate this service with a different Apple ID account, by entering an arbitrary iCloud Account Password value and a blank iCloud Account Description value.
Reference
CVSS
Base: 4.9
Impact: 6.9
Exploitability:3.9
Pristup
VektorSloženostAutentikacija
LOCAL LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE COMPLETE NONE
CVSS vektor AV:L/AC:L/Au:N/C:N/I:C/A:N
Zadnje važnije ažuriranje 27-09-2019 - 17:29
Objavljeno 18-02-2014 - 11:55