cbcvebase.

Apple iOS vulnerabilities

1,765 known vulnerabilities affecting apple/ios.

Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7

Vulnerabilities

Page 60 of 89
CVE-2015-3742P4MEDIUMCVSS 6.8v8.4.1
CVE-2015-3742 [MEDIUM] CVE-2015-3742: iOS 8.4.1 Apple Security Update: About the security content of iOS 8.4.1 Product: iOS Version: 8.4.1 CVE: CVE-2015-3742 Component: CVE-ID
apple
CVE-2015-7104P4MEDIUMCVSS 6.8v9.1
CVE-2015-7104 [MEDIUM] CVE-2015-7104: iOS 9.1 Apple Security Update: About the security content of iOS 9.1 Product: iOS Version: 9.1 CVE: CVE-2015-7104 Component: CVE-2015-7014
apple
CVE-2016-4449P4HIGHCVSS 7.1v9.3.32016-07-18
CVE-2016-4449 [HIGH] CVE-2016-4449: iOS 9.3.3 Apple Security Update: About the security content of iOS 9.3.3 Product: iOS Version: 9.3.3 CVE: CVE-2016-4449 Component: Libc Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution Description: A buffer overflow existed within the "link_ntoa()" function in linkaddr.c. This issue was addressed through additional bounds checking.
apple
CVE-2015-3735P4MEDIUMCVSS 6.8v8.4.1
CVE-2015-3735 [MEDIUM] CVE-2015-3735: iOS 8.4.1 Apple Security Update: About the security content of iOS 8.4.1 Product: iOS Version: 8.4.1 CVE: CVE-2015-3735 Component: CVE-ID
apple
CVE-2015-3739P4MEDIUMCVSS 6.8v8.4.1
CVE-2015-3739 [MEDIUM] CVE-2015-3739: iOS 8.4.1 Apple Security Update: About the security content of iOS 8.4.1 Product: iOS Version: 8.4.1 CVE: CVE-2015-3739 Component: CVE-ID
apple
CVE-2015-3733P4MEDIUMCVSS 6.8v8.4.1
CVE-2015-3733 [MEDIUM] CVE-2015-3733: iOS 8.4.1 Apple Security Update: About the security content of iOS 8.4.1 Product: iOS Version: 8.4.1 CVE: CVE-2015-3733 Component: CVE-ID
apple
CVE-2015-3737P4MEDIUMCVSS 6.8v8.4.1
CVE-2015-3737 [MEDIUM] CVE-2015-3737: iOS 8.4.1 Apple Security Update: About the security content of iOS 8.4.1 Product: iOS Version: 8.4.1 CVE: CVE-2015-3737 Component: CVE-ID
apple
CVE-2015-3734P4MEDIUMCVSS 6.8v8.4.1
CVE-2015-3734 [MEDIUM] CVE-2015-3734: iOS 8.4.1 Apple Security Update: About the security content of iOS 8.4.1 Product: iOS Version: 8.4.1 CVE: CVE-2015-3734 Component: CVE-ID
apple
CVE-2015-3736P4MEDIUMCVSS 6.8v8.4.1
CVE-2015-3736 [MEDIUM] CVE-2015-3736: iOS 8.4.1 Apple Security Update: About the security content of iOS 8.4.1 Product: iOS Version: 8.4.1 CVE: CVE-2015-3736 Component: CVE-ID
apple
CVE-2015-3732P4MEDIUMCVSS 6.8v8.4.1
CVE-2015-3732 [MEDIUM] CVE-2015-3732: iOS 8.4.1 Apple Security Update: About the security content of iOS 8.4.1 Product: iOS Version: 8.4.1 CVE: CVE-2015-3732 Component: CVE-ID
apple
CVE-2015-3658P4MEDIUMCVSS 6.8v8.4
CVE-2015-3658 [MEDIUM] CVE-2015-3658: iOS 8.4 Apple Security Update: About the security content of iOS 8.4 Product: iOS Version: 8.4 CVE: CVE-2015-3658 Component: CVE-ID
apple
CVE-2015-3727P4MEDIUMCVSS 6.8v8.4
CVE-2015-3727 [MEDIUM] CVE-2015-3727: iOS 8.4 Apple Security Update: About the security content of iOS 8.4 Product: iOS Version: 8.4 CVE: CVE-2015-3727 Component: CVE-ID
apple
CVE-2018-4113P4MEDIUMCVSS 6.5v11.32018-03-29
CVE-2018-4113 [MEDIUM] CVE-2018-4113: iOS 11.3 Apple Security Update: About the security content of iOS 11.3 Product: iOS Version: 11.3 CVE: CVE-2018-4113 Component: WebKit Impact: Unexpected interaction with indexing types causing an ASSERT failure Description: An array indexing issue existed in the handling of a function in javascript core. This issue was addressed through improved checks
apple
CVE-2021-30786P4HIGHCVSS 7.0≥ unspecified, < 14.72021-09-08
CVE-2021-30786 [HIGH] CWE-362 CVE-2021-30786: A race condition was addressed with improved state handling. This issue is fixed in iOS 14.7, macOS A race condition was addressed with improved state handling. This issue is fixed in iOS 14.7, macOS Big Sur 11.5. Opening a maliciously crafted PDF file may lead to an unexpected application termination or arbitrary code execution.
nvd
CVE-2016-7623P4MEDIUMCVSS 6.5v10.22016-12-12
CVE-2016-7623 [MEDIUM] CVE-2016-7623: iOS 10.2 Apple Security Update: About the security content of iOS 10.2 Product: iOS Version: 10.2 CVE: CVE-2016-7623 Component: WebKit Impact: Visiting a maliciously crafted website may compromise user information Description: An issue existed in the handling of blob URLs. This issue was addressed through improved URL handling.
apple
CVE-2016-4760P4MEDIUMCVSS 6.5v102016-09-13
CVE-2016-4760 [MEDIUM] CVE-2016-4760: iOS 10 Apple Security Update: About the security content of iOS 10 Product: iOS Version: 10 CVE: CVE-2016-4760 Component: WebKit Impact: A malicious website may be able to access non-HTTP services Description: Safari's support of HTTP/0.9 allowed cross-protocol exploitation of non-HTTP services using DNS rebinding. The issue was addressed by restricting HTTP/0.9 responses to default ports and canceling resource loads if the document was loaded with a differe
apple
CVE-2015-3750P4MEDIUMCVSS 6.4v8.4.1
CVE-2015-3750 [MEDIUM] CVE-2015-3750: iOS 8.4.1 Apple Security Update: About the security content of iOS 8.4.1 Product: iOS Version: 8.4.1 CVE: CVE-2015-3750 Component: CVE-ID
apple
CVE-2018-4460P4MEDIUMCVSS 6.5v12.1.12018-12-05
CVE-2018-4460 [MEDIUM] CVE-2018-4460: iOS 12.1.1 Apple Security Update: About the security content of iOS 12.1.1 Product: iOS Version: 12.1.1 CVE: CVE-2018-4460 Component: Kernel Impact: An attacker in a privileged position may be able to perform a denial of service attack Description: A denial of service issue was addressed by removing the vulnerable code.
apple
CVE-2017-7106P4MEDIUMCVSS 6.5v112017-09-19
CVE-2017-7106 [MEDIUM] CVE-2017-7106: iOS 11 Apple Security Update: About the security content of iOS 11 Product: iOS Version: 11 CVE: CVE-2017-7106 Component: WebKit Impact: Visiting a malicious website may lead to address bar spoofing Description: An inconsistent user interface issue was addressed with improved state management.
apple
CVE-2017-2493P4MEDIUMCVSS 6.5v10.32017-03-27
CVE-2017-2493 [MEDIUM] CVE-2017-2493: iOS 10.3 Apple Security Update: About the security content of iOS 10.3 Product: iOS Version: 10.3 CVE: CVE-2017-2493 Component: WebKit Impact: Processing maliciously crafted web content may exfiltrate data cross-origin Description: A validation issue existed in element handling. This issue was addressed through improved validation.
apple
Apple iOS vulnerabilities | cvebase