PT-2026-27611 · Apple · Ipados+3
CVE-2026-28895
·
Publicado
2026-03-24
·
Atualizado
2026-04-18
CVSS v3.1
4.6
Média
| Vetor | AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
iOS versions prior to 26.4
iPadOS versions prior to 26.4
Description
A security issue exists where an attacker with physical access to an iOS device with Stolen Device Protection enabled may be able to access biometrics-gated Protected Apps with the passcode. The issue was addressed with improved checks. The affected components include Spotlight and UIKit.
Recommendations
Update to iOS version 26.4.
Update to iPadOS version 26.4.
Correção
Improper Access Control
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Spotlight
Uikit
Ios
Ipados