CVE-2015-1062 describes a vulnerability in Apple iOS before 8.2 and Apple TV before 7.1, where the MobileStorageMounter component fails to delete invalid disk-image folders. This flaw allows a crafted application to create folders in arbitrary filesystem locations. With a CVSS score of 5.0 (AV:N/AC:L/Au:N/C:N/I:P/A:N), it indicates a network-based attack with low complexity, resulting in potential partial integrity impact without requiring authentication. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or KEV listing, and community discussion and media coverage are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 7.0.3CPE matchmatch criteria | cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* | ||
<= 8.1.3CPE matchmatch criteria | cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:P/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.