Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Telephony subsystem in Apple iOS before 7 does not require API conformity for access to telephony-daemon interfaces, which allows attackers to bypass intended restrictions on phone calls via a crafted app that sends direct requests to the daemon.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple iOS Telephony子系统权限许可和访问控制漏洞
Vulnerability Description
Apple iOS是美国苹果(Apple)公司为移动设备所开发的一套操作系统。 Apple iOS 6.1.4及之前的版本中的Telephony子系统中存在访问控制漏洞,该漏洞源于程序没有对电话守护进程接口进行访问控制。攻击者可通过特制的应用程序发送直接请求到守护进程,利用该漏洞绕过电话通话既定的访问限制,完全控制电话。
CVSS Information
N/A
Vulnerability Type
N/A