cbcvebase.

Apple Ios 18.3 And Ipados vulnerabilities

40 known vulnerabilities affecting apple/ios_18.3_and_ipados.

Total CVEs
40
CISA KEV
1
actively exploited
Public exploits
1
Exploited in wild
2
Severity breakdown
CRITICAL2HIGH11MEDIUM23LOW4

Vulnerabilities

Page 1 of 2
CVE-2025-24085P1CRITICALCVSS 10.0KEVPoCv18.32025-01-27
CVE-2025-24085 [CRITICAL] CVE-2025-24085: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24085 Component: CVE-2025-24085
apple
CVE-2025-24113P1MEDIUMCVSS 4.3Exploitedv18.32025-01-27
CVE-2025-24113 [MEDIUM] CVE-2025-24113: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24113 Component: Safari Impact: Visiting a malicious website may lead to user interface spoofing Description: The issue was addressed with improved UI.
apple
CVE-2025-24150P3HIGHCVSS 8.8v18.32025-01-27
CVE-2025-24150 [HIGH] CVE-2025-24150: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24150 Component: WebKit Web Inspector Impact: Copying a URL from Web Inspector may lead to command injection Description: A privacy issue was addressed with improved handling of files.
apple
CVE-2025-24189P3HIGHCVSS 8.8v18.32025-01-27
CVE-2025-24189 [HIGH] CVE-2025-24189: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24189 Component: WebKit Impact: Processing maliciously crafted web content may lead to memory corruption Description: The issue was addressed with improved checks.
apple
CVE-2025-24154P3CRITICALCVSS 9.1v18.32025-01-27
CVE-2025-24154 [CRITICAL] CVE-2025-24154: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24154 Component: WebContentFilter Impact: An attacker may be able to cause unexpected system termination or corrupt kernel memory Description: An out-of-bounds write was addressed with improved input validation.
apple
CVE-2025-24159P3HIGHCVSS 7.8v18.32025-01-27
CVE-2025-24159 [HIGH] CVE-2025-24159: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24159 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: A validation issue was addressed with improved logic.
apple
CVE-2025-24107P3HIGHCVSS 7.8v18.32025-01-27
CVE-2025-24107 [HIGH] CVE-2025-24107: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24107 Component: Kernel Impact: A malicious app may be able to gain root privileges Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-24137P3HIGHCVSS 8.0v18.32025-01-27
CVE-2025-24137 [HIGH] CVE-2025-24137: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24137 Component: AirPlay Impact: An attacker on the local network may corrupt process memory Description: A type confusion issue was addressed with improved checks.
apple
CVE-2024-55549P3HIGHCVSS 7.8v18.32025-01-27
CVE-2024-55549 [HIGH] CVE-2024-55549: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2024-55549 Component: Libnotify Impact: An app may be able to cause a denial-of-service Description: An app could impersonate system notifications. Sensitive notifications now require restricted entitlements.
apple
CVE-2025-24126P3HIGHCVSS 7.3v18.32025-01-27
CVE-2025-24126 [HIGH] CVE-2025-24126: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24126 Component: AirPlay Impact: An attacker on the local network may be able to corrupt process memory Description: An input validation issue was addressed.
apple
CVE-2025-24129P3HIGHCVSS 7.5v18.32025-01-27
CVE-2025-24129 [HIGH] CVE-2025-24129: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24129 Component: AirPlay Impact: An attacker on the local network may cause an unexpected app termination Description: A type confusion issue was addressed with improved checks.
apple
CVE-2025-24855P3HIGHCVSS 7.8v18.32025-01-27
CVE-2025-24855 [HIGH] CVE-2025-24855: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24855 Component: Libnotify Impact: An app may be able to cause a denial-of-service Description: An app could impersonate system notifications. Sensitive notifications now require restricted entitlements.
apple
CVE-2024-9956P3HIGHCVSS 7.8v18.32025-01-27
CVE-2024-9956 [HIGH] CVE-2024-9956: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2024-9956 Component: Passkeys Impact: An app may gain unauthorized access to Bluetooth Description: This is a vulnerability in open source code and Apple Software is among the affected projects. The CVE-ID was assigned by a third party. Learn more about the issue and CVE-ID at cve.org.
apple
CVE-2025-24177P3HIGHCVSS 7.5v18.32025-01-27
CVE-2025-24177 [HIGH] CVE-2025-24177: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24177 Component: AirPlay Impact: An attacker on the local network may be able to cause a denial-of-service Description: A null pointer dereference was addressed with improved input validation.
apple
CVE-2025-24131P4MEDIUMCVSS 6.5v18.32025-01-27
CVE-2025-24131 [MEDIUM] CVE-2025-24131: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24131 Component: AirPlay Impact: An attacker on the local network may be able to cause a denial-of-service Description: The issue was addressed with improved memory handling.
apple
CVE-2025-24143P4MEDIUMCVSS 6.5v18.32025-01-27
CVE-2025-24143 [MEDIUM] CVE-2025-24143: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24143 Component: WebKit Impact: A maliciously crafted webpage may be able to fingerprint the user Description: The issue was addressed with improved access restrictions to the file system.
apple
CVE-2025-24158P4MEDIUMCVSS 6.5v18.32025-01-27
CVE-2025-24158 [MEDIUM] CVE-2025-24158: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24158 Component: WebKit Impact: Processing web content may lead to a denial-of-service Description: The issue was addressed with improved memory handling.
apple
CVE-2025-24162P4MEDIUMCVSS 6.5v18.32025-01-27
CVE-2025-24162 [MEDIUM] CVE-2025-24162: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24162 Component: WebKit Impact: Processing maliciously crafted web content may lead to an unexpected process crash Description: This issue was addressed through improved state management.
apple
CVE-2025-24104P4MEDIUMCVSS 5.5v18.32025-01-27
CVE-2025-24104 [MEDIUM] CVE-2025-24104: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24104 Component: Managed Configuration Impact: Restoring a maliciously crafted backup file may lead to modification of protected system files Description: This issue was addressed with improved handling of symlinks.
apple
CVE-2025-24149P4MEDIUMCVSS 5.5v18.32025-01-27
CVE-2025-24149 [MEDIUM] CVE-2025-24149: iOS 18.3 and iPadOS 18.3 Apple Security Update: About the security content of iOS 18.3 and iPadOS 18.3 Product: iOS 18.3 and iPadOS Version: 18.3 CVE: CVE-2025-24149 Component: SceneKit Impact: Parsing a file may lead to disclosure of user information Description: An out-of-bounds read was addressed with improved bounds checking.
apple
Apple Ios 18.3 And Ipados vulnerabilities | cvebase