cbcvebase.

Apple Ipad Os vulnerabilities

89 known vulnerabilities affecting apple/ipad_os.

Total CVEs
89
CISA KEV
0
Public exploits
0
Exploited in wild
2
Severity breakdown
CRITICAL4HIGH38MEDIUM37LOW10

Vulnerabilities

Page 4 of 5
CVE-2020-3885P4MEDIUMCVSS 4.3fixed in 13.42020-04-01
CVE-2020-3885 [MEDIUM] CWE-670 CVE-2020-3885: A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 1 A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. A file URL may be incorrectly processed.
nvd
CVE-2024-23241P4MEDIUMCVSS 5.5fixed in 17.42024-03-08
CVE-2024-23241 [MEDIUM] CWE-922 CVE-2024-23241: This issue was addressed through improved state management. This issue is fixed in iOS 17.4 and iPad This issue was addressed through improved state management. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4. An app may be able to leak sensitive user information.
nvd
CVE-2020-9772P4MEDIUMCVSS 5.5fixed in 13.42020-10-22
CVE-2020-9772 [MEDIUM] CVE-2020-9772: A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 1 A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4, macOS Catalina 10.15.4, tvOS 13.4, watchOS 6.2. A sandboxed process may be able to circumvent sandbox restrictions.
nvd
CVE-2024-23297P4MEDIUMCVSS 5.5fixed in 17.42024-03-08
CVE-2024-23297 [MEDIUM] CVE-2024-23297: The issue was addressed with improved checks. This issue is fixed in iOS 17.4 and iPadOS 17.4, tvOS The issue was addressed with improved checks. This issue is fixed in iOS 17.4 and iPadOS 17.4, tvOS 17.4, watchOS 10.4. A malicious application may be able to access private information.
nvd
CVE-2024-23250P4MEDIUMCVSS 5.5fixed in 17.42024-03-08
CVE-2024-23250 [MEDIUM] CWE-863 CVE-2024-23250: An access issue was addressed with improved access restrictions. This issue is fixed in iOS 17.4 and An access issue was addressed with improved access restrictions. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, watchOS 10.4. An app may be able to access Bluetooth-connected microphones without user permission.
nvd
CVE-2024-23205P4MEDIUMCVSS 5.5fixed in 17.42024-03-08
CVE-2024-23205 [MEDIUM] CWE-922 CVE-2024-23205: A privacy issue was addressed with improved private data redaction for log entries. This issue is fi A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4. An app may be able to access sensitive user data.
nvd
CVE-2023-42839P4MEDIUMCVSS 5.5fixed in 17.12024-02-21
CVE-2023-42839 [MEDIUM] CWE-922 CVE-2023-42839: This issue was addressed with improved state management. This issue is fixed in tvOS 17.1, watchOS 1 This issue was addressed with improved state management. This issue is fixed in tvOS 17.1, watchOS 10.1, macOS Sonoma 14.1, iOS 17.1 and iPadOS 17.1. An app may be able to access sensitive user data.
nvd
CVE-2025-24203P4MEDIUMCVSS 5.0fixed in 17.7.62025-03-31
CVE-2025-24203 [MEDIUM] CVE-2025-24203: The issue was addressed with improved checks. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadO The issue was addressed with improved checks. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4, watchOS 11.4. An app may be able to modify protected parts of the file system.
nvd
CVE-2020-3887P4MEDIUMCVSS 4.3fixed in 13.42020-04-01
CVE-2020-3887 [MEDIUM] CVE-2020-3887: A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 1 A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. A download's origin may be incorrectly associated.
nvd
CVE-2019-8774P4MEDIUMCVSS 5.5fixed in 13.12020-10-27
CVE-2019-8774 [MEDIUM] CWE-20 CVE-2019-8774: A resource exhaustion issue was addressed with improved input validation. This issue is fixed in iOS A resource exhaustion issue was addressed with improved input validation. This issue is fixed in iOS 13.1 and iPadOS 13.1, macOS Catalina 10.15. Parsing a maliciously crafted iBooks file may lead to a persistent denial-of-service.
nvd
CVE-2024-23220P4MEDIUMCVSS 5.5fixed in 17.42024-03-08
CVE-2024-23220 [MEDIUM] CVE-2024-23220: The issue was addressed with improved handling of caches. This issue is fixed in iOS 17.4 and iPadOS The issue was addressed with improved handling of caches. This issue is fixed in iOS 17.4 and iPadOS 17.4, visionOS 1.1. An app may be able to fingerprint the user.
nvd
CVE-2024-23239P4MEDIUMCVSS 4.7fixed in 17.42024-03-08
CVE-2024-23239 [MEDIUM] CWE-362 CVE-2024-23239: A race condition was addressed with improved state handling. This issue is fixed in iOS 17.4 and iPa A race condition was addressed with improved state handling. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, watchOS 10.4. An app may be able to leak sensitive user information.
nvd
CVE-2023-42843P4MEDIUMCVSS 4.3fixed in 16.7.2≥ 17.0, < 17.12024-02-21
CVE-2023-42843 [MEDIUM] CWE-290 CVE-2023-42843: An inconsistent user interface issue was addressed with improved state management. This issue is fix An inconsistent user interface issue was addressed with improved state management. This issue is fixed in iOS 16.7.2 and iPadOS 16.7.2, iOS 17.1 and iPadOS 17.1, Safari 17.1, macOS Sonoma 14.1. Visiting a malicious website may lead to address bar spoofing.
nvd
CVE-2024-23273P4MEDIUMCVSS 4.3fixed in 17.42024-03-08
CVE-2024-23273 [MEDIUM] CWE-295 CVE-2024-23273: This issue was addressed through improved state management. This issue is fixed in Safari 17.4, iOS This issue was addressed through improved state management. This issue is fixed in Safari 17.4, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4. Private Browsing tabs may be accessed without authentication.
nvd
CVE-2023-42952P4MEDIUMCVSS 4.4fixed in 17.12024-02-21
CVE-2023-42952 [MEDIUM] CWE-269 CVE-2023-42952: The issue was addressed with improved checks. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS The issue was addressed with improved checks. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Ventura 13.6.3, macOS Sonoma 14.1, macOS Monterey 12.7.1. An app with root privileges may be able to access private information.
nvd
CVE-2024-23293P4MEDIUMCVSS 4.6fixed in 17.42024-03-08
CVE-2024-23293 [MEDIUM] CVE-2024-23293: This issue was addressed through improved state management. This issue is fixed in iOS 17.4 and iPad This issue was addressed through improved state management. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, watchOS 10.4. An attacker with physical access may be able to use Siri to access sensitive user data.
nvd
CVE-2020-3888P4MEDIUMCVSS 4.3fixed in 13.42020-04-01
CVE-2020-3888 [MEDIUM] CVE-2020-3888: A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 1 A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4. A maliciously crafted page may interfere with other web contexts.
nvd
CVE-2023-42951P4MEDIUMCVSS 4.3fixed in 17.12024-02-21
CVE-2023-42951 [MEDIUM] CVE-2023-42951: The issue was addressed with improved handling of caches. This issue is fixed in iOS 17.1 and iPadOS The issue was addressed with improved handling of caches. This issue is fixed in iOS 17.1 and iPadOS 17.1. A user may be unable to delete browsing history items.
nvd
CVE-2023-42855P4MEDIUMCVSS 4.6fixed in 17.12024-02-21
CVE-2023-42855 [MEDIUM] CVE-2023-42855: This issue was addressed with improved state management. This issue is fixed in iOS 17.1 and iPadOS This issue was addressed with improved state management. This issue is fixed in iOS 17.1 and iPadOS 17.1. An attacker with physical access may be able to silently persist an Apple ID on an erased device.
nvd
CVE-2020-3894P4LOWCVSS 3.1fixed in 13.42020-04-01
CVE-2020-3894 [LOW] CWE-362 CVE-2020-3894: A race condition was addressed with additional validation. This issue is fixed in iOS 13.4 and iPadO A race condition was addressed with additional validation. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. An application may be able to read restricted memory.
nvd
Apple Ipad Os vulnerabilities | cvebase