Skip to content

CVE-2014-1345

WebKit in Apple iOS before 7.1.2 and Apple Safari before 6.1.5 and 7.x before 7.0.5 does not properly encode domain names in URLs, which allows remote attackers to spoof the address bar via a crafted web site.

View on NVD

Severity

N/A

EPSS

Probability of exploitation (next 30 days): 0.0062 (0.6%)
Percentile: 70.0%
EPSS: 2026-05-06

Affects

apple:safariapple:iphone_os

Technical description

WebKit in Apple iOS before 7.1.2 and Apple Safari before 6.1.5 and 7.x before 7.0.5 does not properly encode domain names in URLs, which allows remote attackers to spoof the address bar via a crafted web site.

Published: 7/1/2014, 10:17:25 AM
Last modified: 5/6/2026, 10:30:45 PM

References

HomeEventsBlogResourcesTeam