CVE-2016-4620 PUBLISHED CVSS 4.300000190734863 MEDIUM

The Sandbox Profiles component in Apple iOS before 10 does not properly restrict access to directory metadata for SMS draft directories, which allows attackers to discover text-message recipients via a crafted app.

EPSS 0.26% · 48.7th percentile

Risk Scores

CVSS v2.0
4.300000190734863
EPSS Score
0.26%
48.7th percentile

Affected Products

VendorProductVersions
appleiphone_os0
n/an/an/a

Timeline

References

Open in Interactive Console →