CVE-2017-2428 | Apple watchOS up to 3.1 HTTPProtocol cross site scripting (HT207602 / Nessus ID 99264)
A vulnerability has been found in Apple watchOS up to 3.1 and classified as critical. This vulnerability affects unknown code of the component HTTPProtocol. The manipulation leads to basic cross site scripting.
This vulnerability was named CVE-2017-2428. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.