CVE-2024-44276
CVSS 3.1 Score 7.3 of 10 (high)
Details
Published Mar 17, 2025
Updated: Mar 28, 2025
CWE ID 319
Summary
CVE-2024-44276 is a vulnerability affecting iOS and iPadOS where sensitive information could be leaked due to the lack of HTTPS encryption when data is transmitted over the network. This issue poses a risk particularly in enterprise environments where an attacker in a privileged position could intercept the unencrypted data. The vulnerability has been addressed in iOS 18.2 and iPadOS 18.2 through the implementation of HTTPS encryption for all data transmissions.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- iOS
- iPadOS
- Apple (iPhone OS)
Affected Vendors
- Apple