CVE-2023-28191
MEDIUMApple Ipados < 16.5 - Origin Validation Error
Title source: ruleDescription
This issue was addressed with improved redaction of sensitive information. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, macOS Big Sur 11.7.7, macOS Monterey 12.6.6, iOS 16.5 and iPadOS 16.5. An app may be able to bypass Privacy preferences.
References (6)
Scores
CVSS v3
5.5
EPSS
0.0001
EPSS Percentile
0.9%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Classification
CWE
CWE-346
Status
published
Affected Products (5)
apple/ipados
< 16.5
apple/iphone_os
< 16.5
apple/macos
< 11.7.7
apple/tvos
< 16.5
apple/watchos
< 9.5
Timeline
Published
Jun 23, 2023
Tracked Since
Feb 18, 2026