Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.8
CVE-2016-4697
Apple HSSPI Support in Apple OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memor…
Mac Os X
after 10.11.6
HIGH 7.8
CVE-2016-4698
AppleMobileFileIntegrity in Apple iOS before 10 and OS X before 10.12 mishandles process entitlement and Team ID values in the task port inheritance …
Iphone Os
after 10.11.6
HIGH 7.8
CVE-2016-4696
AppleEFIRuntime in Apple OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL poin…
Mac Os X
after 10.11.6
CRITICAL 9.1
CVE-2016-4694
The Apache HTTP Server in Apple OS X before 10.12 and OS X Server before 5.2 follows RFC 3875 section 4.1.18 and therefore does not protect applicati…
Mac Os X
after 10.11.6
CRITICAL 9.8
CVE-2016-4658EPSS 9%
xpointer.c in libxml2 before 2.9.5 (as used in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3, and other products) does…
Iphone Os
2.9.5 / 3.0+
MEDIUM 6.1
CVE-2016-4618
Cross-site scripting (XSS) vulnerability in Safari Reader in Apple iOS before 10 and Safari before 10 allows remote attackers to inject arbitrary web…
Safari
after 9.3.5
HIGH 8.8
CVE-2016-4611
WebKit in Apple iOS before 10, Safari before 10, and tvOS before 10 allows remote attackers to execute arbitrary code or cause a denial of service (m…
Safari
10.0+
MEDIUM 5.3
CVE-2016-4746
The Keyboards component in Apple iOS before 10 does not properly use a cache for auto-correct suggestions, which allows remote attackers to obtain se…
Iphone Os
after 9.3.5
MEDIUM 5.9
CVE-2016-4741
The Assets component in Apple iOS before 10 allows man-in-the-middle attackers to block software updates via vectors related to lack of an HTTPS sess…
Iphone Os
after 9.3.5
MEDIUM 5.5
CVE-2016-4719
The GeoServices component in Apple iOS before 10 and watchOS before 3 does not properly restrict access to PlaceData information, which allows attack…
Watchos
after 9.3.5
HIGH 7.8
CVE-2016-4705
otool in Apple Xcode before 8 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via unspec…
Xcode
after 7.3.1
HIGH 7.8
CVE-2016-4704
otool in Apple Xcode before 8 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via unspec…
Xcode
after 7.3.1
MEDIUM 5.3
CVE-2016-7152EPSS 14%
The HTTPS protocol does not consider the role of the TCP congestion window in providing information about content length, which makes it easier for r…
Safari
Mitigation only
HIGH 8.8
CVE-2016-4657 KEVEPSS 64%
WebKit in Apple iOS before 9.3.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web…
Iphone Os
9.3.5+
HIGH 7.8
CVE-2016-4656 KEVEPSS 21%
The kernel in Apple iOS before 9.3.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corrupti…
Iphone Os
9.3.5+
MEDIUM 5.5
CVE-2016-4655 KEVEPSS 30%
The kernel in Apple iOS before 9.3.5 allows attackers to obtain sensitive information from memory via a crafted app.
Iphone Os
9.3.5+
HIGH 7.8
CVE-2016-4654
IOMobileFrameBuffer in Apple iOS before 9.3.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory…
Iphone Os
Mitigation only
HIGH 7.8
CVE-2016-4653
The kernel in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows local users to gain privileges or cause…
Iphone Os
2.2.2 / 9.2.2+
MEDIUM 6.3
CVE-2016-4652
CoreGraphics in Apple OS X before 10.11.6 allows local users to obtain sensitive information from kernel memory and consequently gain privileges, or …
Mac Os X
after 10.11.5
MEDIUM 6.1
CVE-2016-4651
Cross-site scripting (XSS) vulnerability in the WebKit JavaScript bindings in Apple iOS before 9.3.3 and Safari before 9.1.2 allows remote attackers …
Safari
after 9.3.2
MEDIUM 5.5
CVE-2016-4649
Audio in Apple OS X before 10.11.6 allows local users to cause a denial of service (NULL pointer dereference) via unspecified vectors.
Mac Os X
after 10.11.5
MEDIUM 5.5
CVE-2016-4648
Audio in Apple OS X before 10.11.6 allows local users to obtain sensitive kernel memory-layout information or cause a denial of service (out-of-bound…
Mac Os X
after 10.11.5
HIGH 7.8
CVE-2016-4647
Audio in Apple OS X before 10.11.6 allows local users to gain privileges or cause a denial of service (memory corruption) via a crafted file.
Mac Os X
after 10.11.5
MEDIUM 6.5
CVE-2016-4646
Audio in Apple OS X before 10.11.6 mishandles a size value, which allows remote attackers to obtain sensitive information or cause a denial of servic…
Mac Os X
after 10.11.5
HIGH 7.3
CVE-2016-4641
Login Window in Apple OS X before 10.11.6 allows attackers to execute arbitrary code in a privileged context or obtain sensitive user information via…
Mac Os X
after 10.11.5
HIGH 7.8
CVE-2016-4640
Login Window in Apple OS X before 10.11.6 allows attackers to execute arbitrary code in a privileged context, obtain sensitive user information, or c…
Mac Os X
after 10.11.5
HIGH 7.0
CVE-2016-4639
Login Window in Apple OS X before 10.11.6 does not properly initialize memory, which allows local users to cause a denial of service via unspecified …
Mac Os X
after 10.11.5
HIGH 7.8
CVE-2016-4638
Login Window in Apple OS X before 10.11.6 allows attackers to gain privileges via a crafted app that leverages a "type confusion."
Mac Os X
after 10.11.5
HIGH 8.8
CVE-2016-4637
CoreGraphics in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to execute arbitrary…
Iphone Os
2.2.2 / 9.2.2+
MEDIUM 5.3
CVE-2016-4635
FaceTime in Apple iOS before 9.3.3 and OS X before 10.11.6 allows man-in-the-middle attackers to spoof relayed-call termination, and obtain sensitive…
Iphone Os
after 10.11.5