Improper Construction of Request Headers in CFNetwork in Apple Mac OS X 10.7.x before 10.7.3

Improper Construction of Request Headers in CFNetwork in Apple Mac OS X 10.7.x before 10.7.3

CVE-2011-3447 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:N/A:N

CFNetwork in Apple Mac OS X 10.7.x before 10.7.3 does not properly construct request headers during parsing of URLs, which allows remote attackers to obtain sensitive information via a malformed URL.

Learn more about our Network Penetration Testing.