CVE-2013-5129

Apple iOS <7 - XSS

Title source: llm

Description

Multiple cross-site scripting (XSS) vulnerabilities in WebKit in Apple iOS before 7 allow user-assisted remote attackers to inject arbitrary web script or HTML via vectors involving a (1) drag-and-drop or (2) copy-and-paste operation.

Scores

EPSS 0.0032
EPSS Percentile 54.7%

Details

CWE
CWE-79
Status published
Products (49)
apple/iphone_os < 6.1.4
apple/iphone_os
apple/iphone_os
apple/iphone_os
apple/iphone_os
apple/iphone_os
apple/iphone_os
apple/iphone_os
apple/iphone_os
apple/iphone_os
... and 39 more
Published Sep 19, 2013
Tracked Since Feb 18, 2026