CVE-2016-1781

MEDIUM

WebKit - Info Disclosure

Title source: llm

Description

WebKit in Apple iOS before 9.3 and Safari before 9.1 mishandles attachment URLs, which makes it easier for remote web servers to track users via unspecified vectors.

Scores

CVSS v3 4.3
EPSS 0.0046
EPSS Percentile 64.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

Classification

CWE
CWE-19
Status draft

Affected Products (2)

apple/safari < 9.0.3
apple/iphone_os < 9.2.1

Timeline

Published Mar 24, 2016
Tracked Since Feb 18, 2026