Vulnerability index

Browse CVEs

157 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Permissions, Privileges & Access ControlsCWE-264 × clear
Iphone Os HIGH 7.8
CVE-2016-7660

An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. watchOS before 3.1.3 is affected. T…

Fix: after 10.12.1
Fix from $1,950 2017-02-20
Iphone Os HIGH 7.8
CVE-2016-7661

An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. The issue involves the "Power Manag…

Fix: after 10.12.1
Fix from $1,950 2017-02-20
Mac Os X MEDIUM 5.5
CVE-2016-7628

An issue was discovered in certain Apple products. macOS before 10.12.2 is affected. The issue involves the "Assets" component, which allows local us…

Fix: after 10.12.1
Fix from $1,600 2017-02-20
Safari HIGH 7.8
CVE-2016-7613

An issue was discovered in certain Apple products. iOS before 10.1 is affected. macOS before 10.12.1 is affected. tvOS before 10.0.1 is affected. wat…

Fix: after 10.12.0
Fix from $1,950 2017-02-20
Mac Os X HIGH 8.8
CVE-2016-7582

An issue was discovered in certain Apple products. macOS before 10.12 is affected. The issue involves the "Intel Graphics Driver" component. It allow…

Fix: after 10.11.6
Fix from $1,950 2017-02-20
Icloud HIGH 7.8
CVE-2016-7583

An issue was discovered in certain Apple products. iCloud before 6.0.1 is affected. The issue involves the setup subsystem in the "iCloud" component.…

Fix: after 6.0.0
Fix from $1,950 2017-02-20
Mac Os X HIGH 8.8
CVE-2016-4617

An issue was discovered in certain Apple products. macOS before 10.12 is affected. The issue involves a sandbox escape related to launchctl process s…

Fix: after 10.11.6
Fix from $1,950 2017-02-20
Iphone Os HIGH 7.8
CVE-2016-4675

An issue was discovered in certain Apple products. iOS before 10.1 is affected. macOS before 10.12.1 is affected. tvOS before 10.0.1 is affected. wat…

Fix: 3.1 / 10.0.1+
Fix from $1,950 2017-02-20
Iphone Os HIGH 7.8
CVE-2016-4778

The kernel in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows attackers to execute arbitrary code in a privileged…

Fix: 3.0 / 10.0+
Fix from $1,950 2016-09-25
Iphone Os HIGH 7.8
CVE-2016-4777

The kernel in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows attackers to execute arbitrary code in a privileged…

Fix: 3.0 / 10.0+
Fix from $1,950 2016-09-25
Mac Os X HIGH 7.8
CVE-2016-4716

diskutil in DiskArbitration in Apple OS X before 10.12 allows local users to gain privileges via unspecified vectors.

Fix: after 10.11.6
Fix from $1,950 2016-09-25
Mac Os X MEDIUM 5.3
CVE-2016-4713

CoreDisplay in Apple OS X before 10.12 allows attackers to view arbitrary users' screens by leveraging screen-sharing access.

Fix: after 10.11.6
Fix from $1,600 2016-09-25
Iphone Os HIGH 7.8
CVE-2016-4654

IOMobileFrameBuffer in Apple iOS before 9.3.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory…

Mitigation only
Fix from $1,950 2016-08-18
Mac Os X MEDIUM 6.3
CVE-2016-4652

CoreGraphics in Apple OS X before 10.11.6 allows local users to obtain sensitive information from kernel memory and consequently gain privileges, or …

Fix: after 10.11.5
Fix from $1,600 2016-07-22
Mac Os X HIGH 7.8
CVE-2016-4638

Login Window in Apple OS X before 10.11.6 allows attackers to gain privileges via a crafted app that leverages a "type confusion."

Fix: after 10.11.5
Fix from $1,950 2016-07-22
Mac Os X HIGH 7.8
CVE-2016-4633

Intel Graphics Driver in Apple OS X before 10.11.6 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (m…

Fix: after 10.11.5
Fix from $1,950 2016-07-22
Itunes HIGH 7.8
CVE-2016-1742

Untrusted search path vulnerability in the installer in Apple iTunes before 12.4 allows local users to gain privileges via a Trojan horse DLL in the …

Fix: after 12.3.1
Fix from $1,950 2016-05-20
Iphone Os HIGH 7.8
CVE-2016-1751

The kernel in Apple iOS before 9.3, tvOS before 9.2, and watchOS before 2.2 does not properly restrict the execute permission, which allows attackers…

Fix: 2.2 / 9.2+
Fix from $1,950 2016-03-24
Iphone Os MEDIUM 6.8
CVE-2016-1734

AppleUSBNetworking in Apple iOS before 9.3 and OS X before 10.11.4 allows physically proximate attackers to execute arbitrary code in a privileged co…

Fix: after 10.11.3
Fix from $1,600 2016-03-24
Mac Os X HIGH 7.8
CVE-2015-6980

Directory Utility in Apple OS X before 10.11.1 mishandles authentication for new sessions, which allows local users to gain privileges via unspecifie…

Fix: after 10.11.0
Fix from $1,950 2016-01-11
Mac Os X HIGH 10.0
CVE-2015-7071

The File Bookmark component in Apple OS X before 10.11.2 allows attackers to bypass a sandbox protection mechanism for app scoped bookmarks via a cra…

Fix: after 10.11.1
Fix from $1,950 2015-12-11
Mac Os X HIGH 7.2
CVE-2015-7063

The kernel loader in EFI in Apple OS X before 10.11.2 allows local users to gain privileges via a crafted pathname.

Fix: after 10.11.1
Fix from $1,950 2015-12-11
Mac Os X HIGH 7.2
CVE-2015-7052

kext tools in Apple OS X before 10.11.2 mishandles kernel-extension loading, which allows local users to gain privileges via unspecified vectors.

Fix: after 10.11.1
Fix from $1,950 2015-12-11
Iphone Os HIGH 9.3
CVE-2015-7051

MobileStorageMounter in Apple iOS before 9.2 and tvOS before 9.1 mishandles the timing of trust-cache loading, which allows attackers to execute arbi…

Fix: after 9.1
Fix from $1,950 2015-12-11
Watchos MEDIUM 6.8
CVE-2015-7001

AppSandbox in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 mishandles hard links, which allows attackers to byp…

Fix: after 10.11.1
Fix from $1,600 2015-12-11
Mac Os X HIGH 7.6
CVE-2015-7016

The MCX Application Restrictions component in Apple OS X before 10.11.1, when Managed Configuration is enabled, mishandles provisioning profiles, whi…

Fix: after 10.11.0
Fix from $1,950 2015-10-23
Mac Os X MEDIUM 6.8
CVE-2015-7003

coreaudiod in Audio in Apple OS X before 10.11.1 does not initialize an unspecified data structure, which allows attackers to execute arbitrary code …

Fix: after 10.11.0
Fix from $1,600 2015-10-23
Mac Os X HIGH 7.2
CVE-2015-5945

The Sandbox subsystem in Apple OS X before 10.11.1 allows local users to gain privileges via vectors involving NVRAM parameters.

Fix: after 10.11.0
Fix from $1,950 2015-10-23
Mac Os X Server MEDIUM 5.0
CVE-2015-7031

The Web Service component in Apple OS X Server before 5.0.15 omits an unspecified HTTP header configuration, which allows remote attackers to bypass …

Fix: after 5.0.14
Fix from $1,600 2015-10-23
Mac Os X HIGH 7.2
CVE-2015-5889EPSS 5%

rsh in the remote_cmds component in Apple OS X before 10.11 allows local users to obtain root privileges via vectors involving environment variables.

Fix: after 10.10.5
Fix from $1,950 2015-10-09