Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

William Redwood

Researcher fromHampton School
#56095of 56,335
2.1Total CVSS
Vulnerabilities · 1
PT-2015-2452
2.1
2015-10-23
Apple · Ios · CVE-2015-7000
**Name of the Vulnerable Software and Affected Versions** Apple iOS versions prior to 9.1 **Description** The issue is related to the Notification Center component in the iOS operating system, which lacks protection for certain data. This can be exploited by a local attacker to access protected information by viewing call and message notifications on the lock screen. Specifically, the problem arises when changes to the "Show on Lock Screen" settings are mishandled, allowing an attacker to obtain sensitive information by looking for notifications on the lock screen soon after a setting was disabled. **Recommendations** For Apple iOS versions prior to 9.1, update to version 9.1 or later to resolve the issue. As a temporary workaround, consider disabling the "Show on Lock Screen" feature for sensitive information, such as phone calls and messages, to minimize the risk of exploitation. Restrict access to the lock screen to prevent physically proximate attackers from viewing notifications.