Security Advisory

CVE-2016-4708

6.5
MEDIUM

Vulnerability Description

CFNetwork in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 misparses the Set-Cookie header, which allows remote attackers to obtain sensitive information via a crafted HTTP response.
Published Date September 25, 2016
Official Source NIST NVD Advisory