Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
apple iphone os 3.1 vulnerabilities and exploits
(subscribe to this query)
436
VMScore
CVE-2010-1776
Find My iPhone on iOS 2.0 up to and including 3.1.3 for iPhone 3G and later and iOS 2.1 up to and including 3.1.3 for iPod touch (2nd generation) and later, when Find My iPhone is disabled, allows remote authenticated users with an associated MobileMe account to wipe the device.
Apple Iphone Os 2.1.1
Apple Iphone Os 3.1.3
Apple Iphone Os 2.2.1
Apple Iphone Os 3.0
Apple Iphone Os 3.0.1
Apple Iphone Os 3.1
Apple Iphone Os 3.1.2
Apple Iphone Os 2.1
Apple Iphone Os 2.2
383
VMScore
CVE-2011-3255
CFNetwork in Apple iOS prior to 5 stores AppleID credentials in an unspecified file, which makes it easier for remote malicious users to obtain sensitive information via a crafted application.
Apple Iphone Os 4.3.0
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 4.0.1
Apple Iphone Os 3.1
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.0
Apple Iphone Os 3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
187
VMScore
CVE-2011-3257
The Data Access component in Apple iOS prior to 5 does not properly handle the existence of multiple user accounts on the same mail server, which allows local users to bypass intended access restrictions in opportunistic circumstances by leveraging a different account's cook...
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.2
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2.1
Apple Iphone Os 3.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 4.0
Apple Iphone Os 3.2
Apple Iphone Os 3.1.2
Apple Iphone Os 4.3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 3.1.3
383
VMScore
CVE-2011-3434
The WiFi component in Apple iOS prior to 5 stores WiFi credentials in an unspecified file, which makes it easier for remote malicious users to obtain sensitive information via a crafted application.
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0
Apple Iphone Os 4.0.2
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.1
Apple Iphone Os 3.2
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.1
Apple Iphone Os 3.0
Apple Iphone Os 4.3.0
Apple Iphone Os 4.2.8
383
VMScore
CVE-2011-3426
Cross-site scripting (XSS) vulnerability in Safari in Apple iOS prior to 5 allows remote web servers to inject arbitrary web script or HTML via a file accompanied by a "Content-Disposition: attachment" HTTP header.
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2.1
Apple Iphone Os 3.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.2
Apple Iphone Os 4.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.2
Apple Iphone Os 3.1.2
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 3.1.3
187
VMScore
CVE-2011-3429
The Settings component in Apple iOS prior to 5 stores a cleartext parental-restrictions passcode in an unspecified file, which might allow physically proximate malicious users to obtain sensitive information by reading this file.
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 4.0.1
Apple Iphone Os 4.0
Apple Iphone Os 3.1
Apple Iphone Os 3.1.3
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.2
Apple Iphone Os 3.1.2
828
VMScore
CVE-2011-3430
The Settings component in Apple iOS prior to 5, when a configuration profile is used for a locale other than English, does not properly implement localization, which makes it easier for malicious users to have an unspecified impact by leveraging incorrect configuration display.
Apple Iphone Os 4.3.3
Apple Iphone Os 4.0
Apple Iphone Os 3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.1
Apple Iphone Os 3.0
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
Apple Iphone Os 4.3.0
Apple Iphone Os 4.2.8
Apple Iphone Os 4.0.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.1
187
VMScore
CVE-2011-3431
The Home screen component in Apple iOS prior to 5 does not properly support a certain application-switching gesture, which might allow physically proximate malicious users to obtain sensitive state information by watching the device's screen.
Apple Iphone Os 4.3.0
Apple Iphone Os 4.2.8
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2.1
Apple Iphone Os 3.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.2
Apple Iphone Os 4.3.3
Apple Iphone Os 4.1
Apple Iphone Os 3.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
445
VMScore
CVE-2011-3432
The UIKit Alerts component in Apple iOS prior to 5 allows remote malicious users to cause a denial of service (device hang) via a long tel: URL that triggers a large size for the acceptance dialog.
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 4.0
Apple Iphone Os 3.2
Apple Iphone Os 3.1.2
Apple Iphone Os 3.1
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 4.0.1
Apple Iphone Os 3.1.3
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
231
VMScore
CVE-2011-3253
CalDAV in Apple iOS prior to 5 does not validate X.509 certificates for SSL sessions, which allows man-in-the-middle malicious users to spoof calendar servers and obtain sensitive information via an arbitrary certificate.
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2
Apple Iphone Os 3.2.1
Apple Iphone Os 3.0
Apple Iphone Os 4.3.5
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.2
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48654
CVE-2024-2757
authentication bypass
CVE-2024-3194
CVE-2024-33640
CVE-2024-21111
dos
insecure direct object reference
CVE-2024-21345
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »