CVE-2016-4707

Severity CVSS v4.0:
Pending analysis
Type:
CWE-19 Data Handling
Publication date:
25/09/2016
Last modified:
12/04/2025

Description

CFNetwork in Apple iOS before 10 and OS X before 10.12 mishandles Local Storage deletion, which allows local users to discover the visited web sites of arbitrary users via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* 9.3.5 (including)
cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:* 10.11.6 (including)