Remote Device Erasure Vulnerability in iOS Exchange ActiveSync

Remote Device Erasure Vulnerability in iOS Exchange ActiveSync

CVE-2017-7088 · HIGH Severity

AV:N/AC:M/AU:N/C:N/I:N/A:C

An issue was discovered in certain Apple products. iOS before 11 is affected. The issue involves the "Exchange ActiveSync" component. It allows remote attackers to erase a device in opportunistic circumstances by hijacking a cleartext AutoDiscover V1 session during the setup of an Exchange account.

Learn more about our Cis Benchmark Audit For Apple Ios.