Security Advisory

CVE-2015-3774

4.8

Vulnerability Description

The Dictionary app in Apple OS X before 10.10.5 does not use HTTPS, which allows man-in-the-middle attackers to obtain sensitive information by sniffing the network or spoof word definitions by modifying the client-server data stream.
Published Date August 16, 2015
Official Source NIST NVD Advisory