VDB
CVE-2018-4168
CVE-2018-4168
PUBLISHED
CVSS 4.599999904632568 MEDIUM
An issue was discovered in certain Apple products. iOS before 11.3 is affected. The issue involves the "Files Widget" component. It allows physically proximate attackers to obtain sensitive information by leveraging the display of cached data on a locked device.
EPSS 0.10% · 26.4th percentile
Risk Scores
CVSS 3.0
4.599999904632568
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.10%
26.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| apple | iphone_os | 0 |
Exploit Intelligence
- 1040604 (circl)
- https://support.apple.com/HT208693 (circl)
- 103578 (circl)
Timeline
- Mar 30, 2018 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Dec 27, 2021 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 28, 2022 EPSS Score
- May 2, 2022 EPSS Score
- Sep 5, 2022 EPSS Score
- Nov 6, 2022 EPSS Score
- Jan 8, 2023 EPSS Score
References
- https://support.apple.com/en-us/HT208696 advisory
- https://support.apple.com/en-us/HT208692 advisory
- https://support.apple.com/en-us/HT208697 advisory
- https://support.apple.com/en-us/HT208695 advisory
- https://support.apple.com/en-us/HT208694 advisory
- https://support.apple.com/en-us/HT208698 advisory
- https://support.apple.com/en-us/HT208699 advisory
- https://support.apple.com/en-us/HT208693 advisory
- 1040604 vdb
- https://support.apple.com/HT208693 url
- 103578 vdb
- https://nvd.nist.gov/vuln/detail/CVE-2018-4168 advisory