Vulnerability index

Browse CVEs

6,692 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Safari MEDIUM 6.8
CVE-2013-5225

WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (me…

Fix: after 12.0
Fix from $1,600 2013-12-18
Safari MEDIUM 6.8
CVE-2013-5228

WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (me…

Fix: after 12.0
Fix from $1,600 2013-12-18
Safari MEDIUM 6.4
CVE-2013-5227

Apple Safari before 6.1.1 and 7.x before 7.0.1 allows remote attackers to bypass the Same Origin Policy and discover credentials by triggering autofi…

Fix: after 6.1
Fix from $1,600 2013-12-18
Safari MEDIUM 6.8
CVE-2013-5196

WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (me…

Fix: after 12.0
Fix from $1,600 2013-12-18
Safari MEDIUM 6.8
CVE-2013-5197

WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (me…

Fix: after 12.0
Fix from $1,600 2013-12-18
Safari MEDIUM 6.8
CVE-2013-5195

WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (me…

Fix: after 12.0
Fix from $1,600 2013-12-18
Motion MEDIUM 5.0
CVE-2013-6114

Integer overflow in the OZDocument::parseElement function in Apple Motion 5.0.7 allows remote attackers to cause a denial of service (application cra…

No fix yet
Fix from $1,600 2013-11-04
Keynote HIGH 7.2
CVE-2013-5148

Apple Keynote before 6.0 does not properly handle the interaction between Keynote presentation mode and the Screen Lock implementation, which allows …

Fix: after 5.3
Fix from $1,950 2013-10-24
Os X Server MEDIUM 6.8
CVE-2013-5143

The RADIUS service in Server App in Apple OS X Server before 3.0 selects a fallback X.509 certificate in unspecified circumstances, which might allow…

Fix: after 2.2.2
Fix from $1,600 2013-10-24
Safari MEDIUM 5.0
CVE-2013-5130

WebKit in Apple Safari before 6.1 disables the Private Browsing feature upon a launch of the Web Inspector, which makes it easier for context-depende…

Fix: after 6.0.5
Fix from $1,600 2013-10-24
Mac Os X HIGH 7.5
CVE-2013-5179

App Sandbox in Apple Mac OS X before 10.9 allows attackers to bypass intended sandbox restrictions via a crafted app that uses the LaunchServices int…

Fix: after 10.8.5
Fix from $1,950 2013-10-24
Mac Os X MEDIUM 5.8
CVE-2013-5189

Apple Mac OS X before 10.9 does not preserve a certain administrative system-preferences setting across software updates, which allows context-depend…

Fix: after 10.8.5
Fix from $1,600 2013-10-24
Mac Os X MEDIUM 5.7
CVE-2013-5184

The kernel in Apple Mac OS X before 10.9 does not properly check for errors during the processing of multicast Wi-Fi packets, which allows remote att…

Fix: after 10.8.5
Fix from $1,600 2013-10-24
Mac Os X MEDIUM 5.0
CVE-2013-5178

LaunchServices in Apple Mac OS X before 10.9 does not properly restrict Unicode characters in filenames, which allows context-dependent attackers to …

Fix: after 10.8.5
Fix from $1,600 2013-10-24
Mac Os X MEDIUM 5.0
CVE-2013-5182

Mail in Apple Mac OS X before 10.9 allows remote attackers to spoof the existence of a cryptographic signature for an e-mail message by using the mul…

Fix: after 10.8.5
Fix from $1,600 2013-10-24
Mac Os X HIGH 7.1
CVE-2013-5172

The kernel in Apple Mac OS X before 10.9 does not properly determine the output length for SHA-2 digest function calls, which allows context-dependen…

Fix: after 10.8.5
Fix from $1,950 2013-10-24
Mac Os X MEDIUM 6.8
CVE-2013-5168

Console in Apple Mac OS X before 10.9 allows user-assisted remote attackers to execute arbitrary applications by triggering a log entry with a crafte…

Fix: after 10.8.5
Fix from $1,600 2013-10-24
Mac Os X MEDIUM 6.8
CVE-2013-5170

Buffer underflow in CoreGraphics in Apple Mac OS X before 10.9 allows remote attackers to execute arbitrary code or cause a denial of service (applic…

Fix: after 10.8.5
Fix from $1,600 2013-10-24
Mac Os X MEDIUM 6.6
CVE-2013-5175

The kernel in Apple Mac OS X before 10.9 allows local users to obtain sensitive information or cause a denial of service (out-of-bounds read and syst…

Fix: after 10.8.5
Fix from $1,600 2013-10-24
Mac Os X MEDIUM 5.0
CVE-2013-5167

CFNetwork in Apple Mac OS X before 10.9 does not properly support Safari's deletion of session cookies in response to a reset operation, which makes …

Fix: after 10.8.5
Fix from $1,600 2013-10-24
Apple Remote Desktop HIGH 7.5
CVE-2013-5135EPSS 11%

Format string vulnerability in Screen Sharing Server in Apple Mac OS X before 10.9 and Apple Remote Desktop before 3.5.4 allows remote attackers to e…

Fix: after 10.8.5
Fix from $1,950 2013-10-24
Mac Os X MEDIUM 6.4
CVE-2013-5165

socketfilterfw in Application Firewall in Apple Mac OS X before 10.9 does not properly implement the --blockApp option, which allows remote attackers…

Fix: after 10.8.5
Fix from $1,600 2013-10-24
Mac Os X MEDIUM 6.6
CVE-2013-5163

Directory Services in Apple Mac OS X before 10.8.5 Supplemental Update allows local users to bypass password-based authentication and modify arbitrar…

Fix: after 10.8.5
Fix from $1,600 2013-10-04
Iphone Os HIGH 7.1
CVE-2013-5155

The Sandbox subsystem in Apple iOS before 7 allows attackers to cause a denial of service (infinite loop) via an application that writes crafted valu…

Fix: after 6.1.4
Fix from $1,950 2013-09-19
Iphone Os MEDIUM 5.0
CVE-2013-5157

The Twitter subsystem in Apple iOS before 7 does not require API conformity for access to Twitter daemon interfaces, which allows attackers to post T…

Fix: after 6.1.4
Fix from $1,600 2013-09-19
Iphone Os HIGH 9.3
CVE-2013-5139

The IOSerialFamily driver in Apple iOS before 7 allows attackers to execute arbitrary code or cause a denial of service (out-of-bounds array access) …

Fix: after 6.1.4
Fix from $1,950 2013-09-19
Iphone Os HIGH 7.8
CVE-2013-5140

The kernel in Apple iOS before 7 allows remote attackers to cause a denial of service (assertion failure and device restart) via an invalid packet fr…

Fix: after 6.1.4
Fix from $1,950 2013-09-19
Iphone Os HIGH 7.1
CVE-2013-5141

The kernel in Apple iOS before 7 uses an incorrect data size for a certain integer variable, which allows attackers to cause a denial of service (inf…

Fix: after 6.1.4
Fix from $1,950 2013-09-19
Iphone Os MEDIUM 6.3
CVE-2013-5145

kextd in Kext Management in Apple iOS before 7 does not properly verify authorization for IPC messages, which allows local users to (1) load or (2) u…

Fix: after 6.1.4
Fix from $1,600 2013-09-19
Iphone Os MEDIUM 6.8
CVE-2013-1043

WebKit, as used in Apple iOS before 7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and applicat…

Fix: after 6.1.4
Fix from $1,600 2013-09-19