CVE-2020-9916
A URL Unicode encoding issue was addressed with improved state management. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.1.2, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. A malicious attacker may be able to conceal the destination of a URL.
Published
2020-10-16T17:15:17.137
Last Modified
2024-11-21T05:41:31.303
Status
Modified
Source
[email protected]
Severity
CVSSv3.1: 5.3 (MEDIUM)
CVSSv2 Vector
AV:N/AC:L/Au:N/C:N/I:P/A:N
- Access Vector: NETWORK
- Access Complexity: LOW
- Authentication: NONE
- Confidentiality Impact: NONE
- Integrity Impact: PARTIAL
- Availability Impact: NONE
Exploitability Score
10.0
Impact Score
2.9
Weaknesses
-
Type: Primary
NVD-CWE-noinfo
Affected Vendors & Products
References
-
https://support.apple.com/HT211288
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/HT211290
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/HT211291
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/HT211292
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/HT211293
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/HT211294
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/HT211295
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/HT211288
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/HT211290
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/HT211291
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/HT211292
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/HT211293
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/HT211294
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/HT211295
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)