The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.7, iOS 18.5 and iPadOS 18.5. An attacker with physical access to a device may be able to override managed Wi-Fi profiles.
History

Mon, 24 Nov 2025 09:15:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple ios
Apple ipados
Vendors & Products Apple
Apple ios
Apple ipados

Sun, 23 Nov 2025 12:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-284
Metrics cvssV3_1

{'score': 2.4, 'vector': 'CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 21 Nov 2025 21:30:00 +0000

Type Values Removed Values Added
Description The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.7, iOS 18.5 and iPadOS 18.5. An attacker with physical access to a device may be able to override managed Wi-Fi profiles.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published: 2025-11-21T21:22:25.231Z

Updated: 2025-11-23T11:27:13.980Z

Reserved: 2025-03-27T16:13:58.317Z

Link: CVE-2025-31216

cve-icon Vulnrichment

Updated: 2025-11-23T11:26:54.762Z

cve-icon NVD

Status : Received

Published: 2025-11-21T22:16:19.370

Modified: 2025-11-23T12:15:46.857

Link: CVE-2025-31216

cve-icon Redhat

No data.