CVE Database
/

CVE-2012-3724

Back to search

CVE-2012-3724

Published: Sep 20, 2012

Modified: Aug 6, 2024

PUBLISHED

Description

CFNetwork in Apple iOS before 6 does not properly identify the host portion of a URL, which allows remote attackers to obtain sensitive information by leveraging the construction of an HTTP request with an incorrect hostname derived from a malformed URL.

VendorProductVersions

n/a

n/a

affected
n/a

References

85637
vdb-entry
x_refsource_OSVDB
APPLE-SA-2012-09-19-1
vendor-advisory
x_refsource_APPLE

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now