CVE-2017-2517
MEDIUMApple Iphone OS < 10.3.2 - Improper Input Validation
Title source: ruleDescription
An issue was discovered in certain Apple products. iOS before 10.3.3 is affected. The issue involves the "Safari" component. It allows remote attackers to spoof the address bar via a crafted web site.
Scores
CVSS v3
6.5
EPSS
0.0053
EPSS Percentile
66.8%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Details
CWE
CWE-20
Status
published
Products (2)
apple/iphone_os
< 10.3.2
n/a/n/a
Published
Jul 20, 2017
Tracked Since
Feb 18, 2026