Experts discovered that the sandbox vulnerability affects all apps that use the managed app configuration setting in devices that run older versions of iOS 8.4.1. Kevin Watkins, a security researcher from Appthority, argues that users without iOS 84.4.1 are affected by the vulnerability, CVE-2015-3269. The flaw affects all iOS devices that use managed app settings, meaning that Apple is storing enterprise credentials in a directory that can be read by everyone. Tests conducted by Watkins revealed that medical apps used by doctors were leaking patient data, user names, passwords, authentication tokens, and records.”]
Source: https://securityaffairs.co/wordpress/39489/hacking/apple-sandbox-vulnerability.html

