VULNERABILITY INTELLIGENCE
CVE-2018-4232
CVSS score4.3 MEDIUM
EPSS probability2.15%
CISA KEVNot currently listed
Published2018-06-08
Last modified2026-06-17
CVSS vectorCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Description
An issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11.1.1 is affected. iCloud before 7.5 on Windows is affected. iTunes before 12.7.5 on Windows is affected. tvOS before 11.4 is affected. The issue involves the "WebKit" component. It allows remote attackers to overwrite cookies via a crafted web site.
Primary references
- product-security@apple.com — Third Party Advisory, VDB Entry
- product-security@apple.com — Third Party Advisory
- product-security@apple.com — Vendor Advisory
- product-security@apple.com — Vendor Advisory
- product-security@apple.com — Vendor Advisory
- product-security@apple.com — Vendor Advisory
- product-security@apple.com — Vendor Advisory
- product-security@apple.com — Third Party Advisory
- af854a3a-2127-422b-91ae-364da2661108 — Third Party Advisory, VDB Entry
- af854a3a-2127-422b-91ae-364da2661108 — Third Party Advisory
- af854a3a-2127-422b-91ae-364da2661108 — Vendor Advisory
- af854a3a-2127-422b-91ae-364da2661108 — Vendor Advisory