CVE-2014-4493: Apple iPhone OS

High severity, CVSS 7.5. EPSS: 1% chance of exploitation in the next 30 days.

The app-installation functionality in MobileInstallation in Apple iOS before 8.1.3 allows attackers to obtain control of the local app container by leveraging access to an enterprise distribution certificate for signing a crafted app.

Affected products

  • Apple iPhone OS: up to and including 8.1.2

Published 2015-01-30. Last modified 2026-06-17.