VYPR
Medium severity4.3NVD Advisory· Published Feb 1, 2016· Updated Jun 17, 2026

CVE-2016-1728

CVE-2016-1728

Description

The Cascading Style Sheets (CSS) implementation in Apple iOS before 9.2.1 and Safari before 9.0.3 mishandles the "a:visited button" selector during height processing, which makes it easier for remote attackers to obtain sensitive browser-history information via a crafted web site.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Apple Inc./Safari2 versions
    cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*range: <=9.0.2
    • (no CPE)range: <9.0.3
  • cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
    Range: <=9.2
  • Apple Inc./iOSllm-fuzzy
    Range: <9.2.1

Patches

Vulnerability mechanics

References

9

News mentions

0

No linked articles in our index yet.