VulnerabilityModified
CVE-2009-1680
Safari in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly clear the search history when it is cleared from the Settings application, which allows physically proximate attackers to obtain the search…
LOW 2.1EPSS 0.38%
Does this matter?
Lower severity and a low EPSS score (0.38%). Track it; it rarely justifies an emergency change on its own.
Description
Safari in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly clear the search history when it is cleared from the Settings application, which allows physically proximate attackers to obtain the search history.
- CVSS 2.0
- 2.1 LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 0.38% probability · 31th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- apple/iphone os · apple/ipod touch
- Source
- cve@mitre.org
References
- http://lists.apple.com/archives/security-announce/2009/Jun/msg00005.htmlVendor Advisory
- http://osvdb.org/55240
- http://support.apple.com/kb/HT3639Patch, Vendor Advisory
- http://www.securityfocus.com/bid/35414
- http://www.securityfocus.com/bid/35448
- http://www.vupen.com/english/advisories/2009/1621
- http://lists.apple.com/archives/security-announce/2009/Jun/msg00005.htmlVendor Advisory
- http://osvdb.org/55240
- http://support.apple.com/kb/HT3639Patch, Vendor Advisory
- http://www.securityfocus.com/bid/35414
- http://www.securityfocus.com/bid/35448
- http://www.vupen.com/english/advisories/2009/1621
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.