Description
An issue was discovered in certain Apple products. The Apple Support app before 1.2 for iOS is affected. The issue involves the "Analytics" component. It allows remote attackers to obtain sensitive analytics information by leveraging its presence in a cleartext HTTP transmission to an Adobe Marketing Cloud server operated for Apple, as demonstrated by information about the installation date and time.
Published: 2017-10-23
Score: 5.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2017-16185 An issue was discovered in certain Apple products. The Apple Support app before 1.2 for iOS is affected. The issue involves the "Analytics" component. It allows remote attackers to obtain sensitive analytics information by leveraging its presence in a cleartext HTTP transmission to an Adobe Marketing Cloud server operated for Apple, as demonstrated by information about the installation date and time.
History

No history.

Subscriptions

Apple Apple Support Iphone Os
cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2024-08-05T15:56:34.931Z

Reserved: 2017-03-17T00:00:00.000Z

Link: CVE-2017-7147

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-10-23T01:29:14.080

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-7147

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses