The Profiles component in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1, when installing a configuration profile, can replace the password policy from Exchange ActiveSync with a weaker password policy, which allows physically proximate attackers to bypass the intended policy.
2009-06-19T16:30:00.327
2025-04-09T00:30:58.490
Deferred
CVSSv2: 2.1 (LOW)
AV:L/AC:L/Au:N/C:N/I:P/A:N
3.9
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | apple | iphone_os | 1.0.0 | Yes |
Operating System | apple | iphone_os | 1.0.1 | Yes |
Operating System | apple | iphone_os | 1.0.2 | Yes |
Operating System | apple | iphone_os | 1.1.0 | Yes |
Operating System | apple | iphone_os | 1.1.1 | Yes |
Operating System | apple | iphone_os | 1.1.2 | Yes |
Operating System | apple | iphone_os | 1.1.3 | Yes |
Operating System | apple | iphone_os | 1.1.4 | Yes |
Operating System | apple | iphone_os | 1.1.5 | Yes |
Operating System | apple | iphone_os | 2.0 | Yes |
Operating System | apple | iphone_os | 2.0.0 | Yes |
Operating System | apple | iphone_os | 2.0.1 | Yes |
Operating System | apple | iphone_os | 2.0.2 | Yes |
Operating System | apple | iphone_os | 2.1 | Yes |
Operating System | apple | iphone_os | 2.1.1 | Yes |
Operating System | apple | iphone_os | 2.2 | Yes |
Operating System | apple | iphone_os | 2.2.1 | Yes |
Operating System | apple | iphone_os | * | Yes |
Operating System | apple | iphone_os | 1.1.0 | Yes |
Operating System | apple | iphone_os | 1.1.1 | Yes |
Operating System | apple | iphone_os | 1.1.2 | Yes |
Operating System | apple | iphone_os | 1.1.3 | Yes |
Operating System | apple | iphone_os | 1.1.4 | Yes |
Operating System | apple | iphone_os | 1.1.5 | Yes |
Operating System | apple | iphone_os | 2.0 | Yes |
Operating System | apple | iphone_os | 2.0.0 | Yes |
Operating System | apple | iphone_os | 2.0.1 | Yes |
Operating System | apple | iphone_os | 2.0.2 | Yes |
Operating System | apple | iphone_os | 2.1 | Yes |
Operating System | apple | iphone_os | 2.1.1 | Yes |
Operating System | apple | iphone_os | 2.2 | Yes |
Operating System | apple | iphone_os | 2.2.1 | Yes |
Hardware | apple | ipod_touch | * | Yes |