AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2013-3948

MEDIUM · CVSS 4.3 EPSS 1.80%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2013-06-05 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2013-3948
Severity
MEDIUM
CVSS
4.3
EPSS
1.80%

Original NVD Description

Apple iOS 6.1.3 does not follow redirects during determination of the hostname to display in an iOS Enterprise Deployment installation dialog, which makes it easier for remote attackers to trigger installation of arbitrary applications via a download-manifest itms-services:// URL that leverages an open redirect vulnerability within a trusted domain.