Vulnerability index

Browse CVEs

6,692 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2016-1801 The CFNetwork Proxies subsystem in Apple iOS before 9.3.2, OS X before 10.11.5, and tvOS before 9.2.1 mishandles URLs in http and https requests, whi… Mac Os X 9.2.1 / 9.3.2+ Fix from $1,9502016-05-20 HIGH 8.8 CVE-2016-1800 Captive Network Assistant in Apple OS X before 10.11.5 mishandles a custom URL scheme, which allows user-assisted remote attackers to execute arbitra… Mac Os X after 10.11.4 Fix from $1,9502016-05-20 HIGH 7.8 CVE-2016-1799 Audio in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption… Mac Os X after 10.11.4 Fix from $1,9502016-05-20 HIGH 7.8 CVE-2016-1797 Apple Type Services (ATS) in Apple OS X before 10.11.5 allows attackers to bypass intended FontValidator sandbox-policy restrictions and execute arbi… Mac Os X after 10.11.4 Fix from $1,9502016-05-20 HIGH 7.8 CVE-2016-1795 AppleGraphicsPowerManagement in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of ser… Mac Os X after 10.11.4 Fix from $1,9502016-05-20 HIGH 7.8 CVE-2016-1794 The AppleGraphicsControlClient::checkArguments method in AppleGraphicsControl in Apple OS X before 10.11.5 allows attackers to execute arbitrary code… Mac Os X after 10.11.4 Fix from $1,9502016-05-20 HIGH 7.8 CVE-2016-1793 AppleGraphicsDeviceControlClient in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of… Mac Os X after 10.11.4 Fix from $1,9502016-05-20 HIGH 7.8 CVE-2016-1792 The AMD subsystem in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memor… Mac Os X after 10.11.4 Fix from $1,9502016-05-20 HIGH 7.8 CVE-2016-1742 Untrusted search path vulnerability in the installer in Apple iTunes before 12.4 allows local users to gain privileges via a Trojan horse DLL in the … Itunes after 12.3.1 Fix from $1,9502016-05-20 HIGH 7.5 CVE-2016-1208 The server in Apple FileMaker before 14.0.4 on OS X allows remote attackers to read PHP source code via unspecified vectors. Mac Os X after 14.0.3 Fix from $1,9502016-05-14 MEDIUM 5.5 CVE-2016-1789 Apple iBooks Author before 2.4.1 allows remote attackers to read arbitrary files via an iBooks Author file containing an XML external entity declarat… Ibooks Author after 2.4.0 Fix from $1,6002016-04-05 MEDIUM 6.2 CVE-2016-1760 The XPC Services API in LaunchServices in Apple iOS before 9.3 allows attackers to bypass intended event-handler restrictions and modify an arbitrary… Iphone Os after 9.2.1 Fix from $1,6002016-03-29 MEDIUM 5.9 CVE-2016-1788 Messages in Apple iOS before 9.3, OS X before 10.11.4, and watchOS before 2.2 does not properly implement a cryptographic protection mechanism, which… Iphone Os after 10.11.3 Fix from $1,6002016-03-24 MEDIUM 5.3 CVE-2016-1787 Wiki Server in Apple OS X Server before 5.1 allows remote attackers to obtain sensitive information from Wiki pages via unspecified vectors. Mac Os X Server after 5.0.15 Fix from $1,6002016-03-24 MEDIUM 5.4 CVE-2016-1786 The Page Loading implementation in WebKit in Apple iOS before 9.3 and Safari before 9.1 mishandles HTTP responses with a 3xx (aka redirection) status… Safari after 9.2.1 Fix from $1,6002016-03-24 MEDIUM 6.5 CVE-2016-1785 The Page Loading implementation in WebKit in Apple iOS before 9.3 and Safari before 9.1 mishandles character encoding during access to cached data, w… Safari after 9.2.1 Fix from $1,6002016-03-24 MEDIUM 6.5 CVE-2016-1784 The History implementation in WebKit in Apple iOS before 9.3, Safari before 9.1, and tvOS before 9.2 allows remote attackers to cause a denial of ser… Safari 9.1 / 9.2+ Fix from $1,6002016-03-24 HIGH 8.8 CVE-2016-1783 WebKit in Apple iOS before 9.3, Safari before 9.1, and tvOS before 9.2 allows remote attackers to execute arbitrary code or cause a denial of service… Safari 2.10.5 / 9.1+ Fix from $1,9502016-03-24 MEDIUM 6.5 CVE-2016-1782 WebKit in Apple iOS before 9.3 and Safari before 9.1 does not properly restrict redirects that specify a TCP port number, which allows remote attacke… Safari after 9.2.1 Fix from $1,6002016-03-24 MEDIUM 6.5 CVE-2016-1779 WebKit in Apple iOS before 9.3 and Safari before 9.1 allows remote attackers to bypass the Same Origin Policy and obtain physical-location data via a… Safari after 9.2.1 Fix from $1,6002016-03-24 HIGH 8.8 CVE-2016-1778 WebKit in Apple iOS before 9.3 and Safari before 9.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruptio… Safari after 9.2.1 Fix from $1,9502016-03-24 HIGH 7.5 CVE-2016-1777 Web Server in Apple OS X Server before 5.1 supports the RC4 algorithm, which makes it easier for remote attackers to defeat cryptographic protection … Mac Os X Server after 5.0.15 Fix from $1,9502016-03-24 MEDIUM 5.3 CVE-2016-1776 Web Server in Apple OS X Server before 5.1 does not properly restrict access to .DS_Store and .htaccess files, which allows remote attackers to obtai… Mac Os X Server after 5.0.15 Fix from $1,6002016-03-24 HIGH 7.8 CVE-2016-1775 TrueTypeScaler in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allows remote attackers to execute arbitrary cod… Iphone Os 2.2 / 9.2+ Fix from $1,9502016-03-24 MEDIUM 5.3 CVE-2016-1774 The Time Machine server in Server App in Apple OS X Server before 5.1 does not notify the user about ignored permissions during a backup, which makes… Mac Os X Server after 5.0.15 Fix from $1,6002016-03-24 MEDIUM 6.5 CVE-2016-1771 The Downloads feature in Apple Safari before 9.1 mishandles file expansion, which allows remote attackers to cause a denial of service via a crafted … Safari after 9.0.3 Fix from $1,6002016-03-24 MEDIUM 6.5 CVE-2016-1770 The Reminders component in Apple OS X before 10.11.4 allows attackers to bypass an intended user-confirmation requirement and trigger a dialing actio… Mac Os X after 10.11.3 Fix from $1,6002016-03-24 HIGH 7.8 CVE-2016-1769EPSS 5% QuickTime in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a craft… Mac Os X after 10.11.3 Fix from $1,9502016-03-24 HIGH 7.8 CVE-2016-1768EPSS 17% QuickTime in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a craft… Mac Os X after 10.11.3 Fix from $1,9502016-03-24 HIGH 7.8 CVE-2016-1767EPSS 5% QuickTime in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a craft… Mac Os X after 10.11.3 Fix from $1,9502016-03-24