Cookie Management Flaw in Apple Safari and Other Products
CVE-2024-44212
5.3MEDIUM
Key Information:
Summary
A security issue was identified in the cookie management system of Apple's software platforms, where cookies from one origin could be improperly sent to another. This flaw raises significant privacy concerns as it may allow unauthorized access to sensitive information by linking user sessions across different origins. Apple has taken measures to rectify the issue in the affected software versions, ensuring users can browse safely without the risk of third-party exploitation. Users are encouraged to update their devices to the latest versions to mitigate potential risks.
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published