Description
An issue was discovered in certain Apple products. The Apple Support app before 1.2 for iOS is affected. The issue involves the "Analytics" component. It allows remote attackers to obtain sensitive analytics information by leveraging its presence in a cleartext HTTP transmission to an Adobe Marketing Cloud server operated for Apple, as demonstrated by information about the installation date and time.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-16185 | An issue was discovered in certain Apple products. The Apple Support app before 1.2 for iOS is affected. The issue involves the "Analytics" component. It allows remote attackers to obtain sensitive analytics information by leveraging its presence in a cleartext HTTP transmission to an Adobe Marketing Cloud server operated for Apple, as demonstrated by information about the installation date and time. |
References
History
No history.
Status: PUBLISHED
Assigner: apple
Published:
Updated: 2024-08-05T15:56:34.931Z
Reserved: 2017-03-17T00:00:00.000Z
Link: CVE-2017-7147
No data.
Status : Modified
Published: 2017-10-23T01:29:14.080
Modified: 2026-05-13T00:24:29.033
Link: CVE-2017-7147
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD