Sploitus

CVE-2017-2445

4 known exploits for CVE-2017-2445

An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS before 10.2 is affected. The issue involves the "WebKit" component. It allows remote attackers to conduct Universal XSS (UXSS) attacks via crafted frame objects.

Affected products
Safari, Ubuntu, Webkit, Ios, Tvos
Apple Safari
≤ 10.0.3
Apple Iphone Os
≤ 10.2.1
Apple Tvos
≤ 10.1.1
Fix
Available
CVSS 3.0
6.1 MEDIUM
EPSS
4.2% (90th percentile)
Weakness
CWE-79
NVD status
Modified
Published
2017-04-02
CVE-2017-2445 at NVD
Authoritative description, scoring and affected products

4 known exploits for CVE-2017-2445

Proof-of-concept code and exploit modules indexed by Sploitus