CVE Vulnerabilities

CVE-2018-4172

Published: Apr 03, 2018 | Modified: Oct 03, 2019
CVSS 3.x
4.6
MEDIUM
Source:
NVD
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

An issue was discovered in certain Apple products. iOS before 11.3 is affected. The issue involves the Find My iPhone component. It allows physically proximate attackers to bypass the iCloud password requirement for disabling the Find My iPhone feature via vectors involving a backup restore.

Affected Software

Name Vendor Start Version End Version
Iphone_os Apple * 11.3 (excluding)

References