CVE-2017-7148: Apple iPhone OS
Low severity, CVSS 3.3. EPSS: 0.6% chance of exploitation in the next 30 days.
An issue was discovered in certain Apple products. iOS before 11 is affected. The issue involves the "Location Framework" component. It allows attackers to obtain sensitive location information via a crafted app that reads the location variable.
Affected products
- Apple iPhone OS: version 10.3.3 only
Published 2017-10-23. Last modified 2026-06-17.