High severity8.8NVD Advisory· Published Sep 25, 2016· Updated May 6, 2026
CVE-2016-4728
CVE-2016-4728
Description
WebKit in Apple iOS before 10, tvOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 mishandles error prototypes, which allows remote attackers to execute arbitrary code via a crafted web site.
Affected products
4Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- lists.apple.com/archives/security-announce/2016/Sep/msg00007.htmlnvdMailing ListVendor Advisory
- lists.apple.com/archives/security-announce/2016/Sep/msg00008.htmlnvdMailing ListVendor Advisory
- lists.apple.com/archives/security-announce/2016/Sep/msg00011.htmlnvdMailing ListVendor Advisory
- lists.apple.com/archives/security-announce/2016/Sep/msg00012.htmlnvdMailing ListVendor Advisory
- www.securityfocus.com/bid/93064nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1036854nvdThird Party AdvisoryVDB Entry
- support.apple.com/HT207142nvdVendor Advisory
- support.apple.com/HT207143nvdVendor Advisory
- support.apple.com/HT207157nvdVendor Advisory
- support.apple.com/HT207158nvdVendor Advisory
News mentions
0No linked articles in our index yet.