Vulnerability index

Browse CVEs

194 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Access ControlCWE-284 × clear
macOS MEDIUM 5.5
CVE-2023-23508

The issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.7.3, macOS Ventura 13.2, macOS Monterey 12.6.3. An app…

Fix: 11.7.3 / 12.6.3+
Fix from $1,600 2023-02-27
macOS MEDIUM 5.5
CVE-2022-32902

A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13, macOS Monterey 12.6, macOS Big Sur 11.7. An app …

Fix: 11.7 / 12.6+
Fix from $1,600 2023-02-27
Ipados HIGH 8.8
CVE-2022-42861

This issue was addressed with improved checks. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Monterey 12.6.2, macOS Ventura 13.1, iOS 15.7.2…

Fix: 12.6.2 / 15.7.2+
Fix from $1,950 2022-12-15
Ipados MEDIUM 5.5
CVE-2022-42859

Multiple issues were addressed by removing the vulnerable code. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, watchOS 9.2. An …

Fix: 9.2 / 13.1+
Fix from $1,600 2022-12-15
Ipados MEDIUM 5.5
CVE-2022-42862

This issue was addressed by removing the vulnerable code. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1. An app may be able to …

Fix: 13.1 / 16.2+
Fix from $1,600 2022-12-15
Ipados MEDIUM 5.5
CVE-2022-42865

This issue was addressed by enabling hardened runtime. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, tvOS 16.2, watchOS 9.2. A…

Fix: 9.2 / 13.1+
Fix from $1,600 2022-12-15
macOS MEDIUM 5.5
CVE-2022-42853

An access issue was addressed with improved access restrictions. This issue is fixed in macOS Ventura 13.1. An app may be able to modify protected pa…

Fix: 13.1+
Fix from $1,600 2022-12-15
Ipados MEDIUM 5.5
CVE-2022-42811

An access issue was addressed with additional sandbox restrictions. This issue is fixed in tvOS 16.1, iOS 16.1 and iPadOS 16, macOS Ventura 13, watch…

Fix: 9.1 / 13.0+
Fix from $1,600 2022-11-01
macOS MEDIUM 5.5
CVE-2022-42814

A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13. An app may be able to access user-sensitive data.

Fix: 13.0+
Fix from $1,600 2022-11-01
Ipados MEDIUM 5.5
CVE-2022-32946

This issue was addressed with improved entitlements. This issue is fixed in iOS 16.1 and iPadOS 16. An app may be able to record audio using a pair o…

Fix: 16.0 / 16.1+
Fix from $1,600 2022-11-01
macOS MEDIUM 5.5
CVE-2022-32904

An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Big Sur 11.7, macOS Ventura 13, macOS Monterey 12.6.…

Fix: 11.7 / 12.6+
Fix from $1,600 2022-11-01
Iphone Os MEDIUM 5.5
CVE-2022-32918

This issue was addressed with improved data protection. This issue is fixed in iOS 16, macOS Ventura 13. An app may be able to bypass Privacy prefere…

Fix: 13.0 / 16.0+
Fix from $1,600 2022-11-01
macOS MEDIUM 5.5
CVE-2022-32848

A logic issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.6.8, macOS Monterey 12.5. An app may be able to capture a u…

Fix: 11.6.8 / 12.5+
Fix from $1,600 2022-09-23
macOS MEDIUM 5.5
CVE-2022-32783

A logic issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.4. An app may gain unauthorized access to Bluetooth.

Fix: 12.4+
Fix from $1,600 2022-09-23
macOS MEDIUM 5.5
CVE-2022-32789

A logic issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.5. An app may be able to bypass Privacy preferences.

Fix: 12.5+
Fix from $1,600 2022-09-23
Mac Os X MEDIUM 5.5
CVE-2022-32800

This issue was addressed with improved checks. This issue is fixed in Security Update 2022-005 Catalina, macOS Big Sur 11.6.8, macOS Monterey 12.5. A…

Fix: 10.15.7 / 11.6.8+
Fix from $1,600 2022-09-23
macOS MEDIUM 6.5
CVE-2022-32880

This issue was addressed by enabling hardened runtime. This issue is fixed in macOS Monterey 12.5. An app may be able to access user-sensitive data.

Fix: 12.5+
Fix from $1,600 2022-09-20
Ipados MEDIUM 5.5
CVE-2022-32883

A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.6, iOS 15.7 and iPadOS 15.7, iOS 16, macOS Big Sur 1…

Fix: 9.0 / 11.7+
Fix from $1,600 2022-09-20
Mac Os X MEDIUM 5.5
CVE-2022-32834

An access issue was addressed with improvements to the sandbox. This issue is fixed in macOS Monterey 12.5, macOS Big Sur 11.6.8, Security Update 202…

Fix: 10.15.7 / 11.6.8+
Fix from $1,600 2022-08-24
Safari MEDIUM 6.5
CVE-2016-4760

WebKit in Apple iOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 allows remote attackers to conduct DNS rebinding attacks against…

Fix: after 12.4.3
Fix from $1,600 2016-09-25
Mac Os X CRITICAL 9.1
CVE-2016-4694

The Apache HTTP Server in Apple OS X before 10.12 and OS X Server before 5.2 follows RFC 3875 section 4.1.18 and therefore does not protect applicati…

Fix: after 10.11.6
Fix from $2,300 2016-09-25
Webkit HIGH 7.5
CVE-2016-4591

WebKit in Apple iOS before 9.3.3, Safari before 9.1.2, and tvOS before 9.2.2 mishandles the location variable, which allows remote attackers to acces…

No fix yet
Fix from $1,950 2016-07-22
Mac Os X MEDIUM 5.3
CVE-2016-1844

The Messages component in Apple OS X before 10.11.5 mishandles roster changes, which allows remote attackers to modify contact lists via unspecified …

Fix: after 10.11.4
Fix from $1,600 2016-05-20
Iphone Os HIGH 7.5
CVE-2016-1842

MapKit in Apple iOS before 9.3.2, OS X before 10.11.5, and watchOS before 2.2.1 does not use HTTPS for shared links, which allows remote attackers to…

Fix: after 10.11.4
Fix from $1,950 2016-05-20
Mac Os X HIGH 7.8
CVE-2016-1806

Crash Reporter in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context via a crafted app.

Fix: after 10.11.4
Fix from $1,950 2016-05-20
Mac Os X HIGH 7.8
CVE-2016-1805

CoreStorage in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context via a crafted app.

Fix: after 10.11.4
Fix from $1,950 2016-05-20
Mac Os X HIGH 7.8
CVE-2016-1797

Apple Type Services (ATS) in Apple OS X before 10.11.5 allows attackers to bypass intended FontValidator sandbox-policy restrictions and execute arbi…

Fix: after 10.11.4
Fix from $1,950 2016-05-20
Iphone Os MEDIUM 6.2
CVE-2016-1760

The XPC Services API in LaunchServices in Apple iOS before 9.3 allows attackers to bypass intended event-handler restrictions and modify an arbitrary…

Fix: after 9.2.1
Fix from $1,600 2016-03-29
Safari MEDIUM 6.5
CVE-2016-1782

WebKit in Apple iOS before 9.3 and Safari before 9.1 does not properly restrict redirects that specify a TCP port number, which allows remote attacke…

Fix: after 9.2.1
Fix from $1,600 2016-03-24
Mac Os X Server MEDIUM 5.3
CVE-2016-1776

Web Server in Apple OS X Server before 5.1 does not properly restrict access to .DS_Store and .htaccess files, which allows remote attackers to obtai…

Fix: after 5.0.15
Fix from $1,600 2016-03-24