CVE-2012-3746: Medium severity iphone os vulnerability
UIWebView in UIKit in Apple iOS before 6 does not properly use the Data Protection feature, which allows context-dependent attackers to obtain cleartext file content by leveraging direct access to a device's filesystem.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-3746?
CVE-2012-3746 has a moderate severity level as it allows unauthorized access to sensitive file contents.
How do I fix CVE-2012-3746?
To address CVE-2012-3746, users should upgrade their devices to iOS 6 or later, which resolves the vulnerability.
What types of attacks does CVE-2012-3746 enable?
CVE-2012-3746 enables context-dependent attackers to access cleartext file content through unauthorized direct filesystem access.
Who is affected by CVE-2012-3746?
Users of Apple iOS versions prior to 6, including various versions from 1.0.0 to 5.1.1, are affected by CVE-2012-3746.
What components are impacted by CVE-2012-3746?
CVE-2012-3746 impacts the UIWebView component within the UIKit framework of affected iOS versions.