CVE-2017-2393
MEDIUMApple <10.3 - XSS
Title source: llmDescription
An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves the "Safari Reader" component. It allows remote attackers to conduct Universal XSS (UXSS) attacks via a crafted web site.
Scores
CVSS v3
6.1
EPSS
0.0026
EPSS Percentile
49.4%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Classification
CWE
CWE-79
Status
published
Affected Products (2)
apple/iphone_os
< 10.2.1
n/a/n/a
Timeline
Published
Apr 02, 2017
Tracked Since
Feb 18, 2026