5.4

CVE-2014-4452

WebKit, as used in Apple iOS before 8.1.1 and Apple TV before 7.0.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-4462.

Data is provided by the National Vulnerability Database (NVD)
AppletvOS Version >= 6.0 < 7.0.2
AppleiPhone OS Version >= 8.0 < 8.1.1
AppleSafari Version >= 6.0 < 6.2.1
AppleSafari Version >= 7.0 < 7.1.1
AppleSafari Version >= 8.0 < 8.0.1
AppleiTunes Version < 12.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.07% 0.757
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.4 5.5 6.4
AV:A/AC:M/Au:N/C:P/I:P/A:P