CVE-2024-44212 Information

Description

A cookie management issue was addressed with improved state management. This issue is fixed in Safari 18.1 visionOS 2.1 tvOS 18.1 iOS 18.1 and iPadOS 18.1 watchOS 11.1. Cookies belonging to one origin may be sent to another origin.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

Reference

https://support.apple.com/en-us/121563 https://support.apple.com/en-us/121565 https://support.apple.com/en-us/121566 https://support.apple.com/en-us/121569 https://support.apple.com/en-us/121571

Attack Complexity

LOW

Privileges Required

NONE

User Interaction Required

NONE

Scope

NONE

Confidentiality Impact

UNCHANGED

Integrity Impact

NONE

Availability Impact

LOW

Base Score

NONE

Base Severity

5.3

Share on: