CVE-2016-4749 describes a vulnerability in Apple iOS before version 10, where the Printing UIKit component mishandles environment variables. This flaw allows a local attacker to access cleartext AirPrint preview content by reading temporary files. The vulnerability has a low CVSS score of 3.3, indicating low attack complexity and impact, as it only allows for information disclosure (confidentiality) and requires local access. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion, with only one media article mentioning its patch in iOS 10.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 9.3.5CPE matchmatch criteria | cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.