CVE-2017-2404 PUBLISHED CVSS 5 MEDIUM

An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves the "Quick Look" component. It allows remote attackers to trigger telephone calls to arbitrary numbers via a tel: URL in a PDF document, as exploited in the wild in October 2016.

EPSS 1.09% · 77.9th percentile

Risk Scores

CVSS v2.0
5
EPSS Score
1.09%
77.9th percentile

Affected Products

VendorProductVersions
n/an/an/a, n/a
appleiphone_os0, 0, 0

Timeline

References

…and 5 more

Open in Interactive Console →