CVE-2019-8788

HIGH WAF: Medium
CVSS 7.5 Published: 2019-12-18
CWE-20

An issue existed in the parsing of URLs. This issue was addressed with improved input validation. This issue is fixed in iOS 13.2 and iPadOS 13.2, macOS Catalina 10.15.1. Improper URL processing may lead to data exfiltration.

WAF Coverage Analysis

Improper Input Validation Medium WAF Coverage

OWASP: A03:2021 Injection

920xxx - Protocol Enforcement 941xxx - XSS / XXE 942xxx - SQL Injection

Affected Software

VendorProductVersion
appleipadosup to 13.2
appleiphone_osup to 13.2
applemac_os_xup to 10.15.1

References

Back to CVE Database