CVE-2024-44202

An authentication issue was addressed with improved state management. This issue is fixed in Safari 18, iOS 18 and iPadOS 18. Private Browsing tabs may be accessed without authentication.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

History

02 Apr 2026, 19:18

Type Values Removed Values Added
References
  • () https://support.apple.com/en-us/121241 -
Summary (en) An authentication issue was addressed with improved state management. This issue is fixed in iOS 18 and iPadOS 18. Private Browsing tabs may be accessed without authentication. (en) An authentication issue was addressed with improved state management. This issue is fixed in Safari 18, iOS 18 and iPadOS 18. Private Browsing tabs may be accessed without authentication.

04 Nov 2025, 17:16

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2024/Sep/32 -

11 Dec 2024, 03:02

Type Values Removed Values Added
First Time Apple iphone Os
Apple
Apple ipados
CPE cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
References () https://support.apple.com/en-us/121250 - () https://support.apple.com/en-us/121250 - Vendor Advisory

18 Sep 2024, 18:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3
CWE CWE-287
Summary
  • (es) Se solucionó un problema de autenticación con una mejor gestión del estado. Este problema se solucionó en iOS 18 y iPadOS 18. Se puede acceder a las pestañas de Navegación privada sin autenticación.

17 Sep 2024, 00:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-17 00:15

Updated : 2026-04-02 19:18


NVD link : CVE-2024-44202

Mitre link : CVE-2024-44202

CVE.ORG link : CVE-2024-44202


JSON object : View

Products Affected

apple

  • ipados
  • iphone_os
CWE
CWE-287

Improper Authentication