Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
apple iphone os 4.3.0 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2011-0195
The generate-id XPath function in libxslt in Apple iOS 4.3.x prior to 4.3.2 allows remote malicious users to obtain potentially sensitive information about heap memory addresses via a crafted web site. NOTE: this may overlap CVE-2011-1202.
Apple Iphone Os 4.3.0
Apple Iphone Os 4.3.1
NA
CVE-2011-3442
The kernel in Apple iOS prior to 5.0.1 does not ensure the validity of flag combinations for an mmap system call, which allows local users to execute arbitrary unsigned code via a crafted app.
Apple Iphone Os 4.3.0
Apple Iphone Os 4.3.1
Apple Iphone Os 5.0
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.4
NA
CVE-2011-3254
Cross-site scripting (XSS) vulnerability in Calendar in Apple iOS prior to 5 allows remote malicious users to inject arbitrary web script or HTML via an invitation note.
Apple Iphone Os 4.2
Apple Iphone Os 4.3.0
Apple Iphone Os 4.3.2
Apple Iphone Os 4.2.1
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.9
Apple Iphone Os 4.3.4
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.3
NA
CVE-2011-3245
The Keyboards component in Apple iOS prior to 5 displays the final character of an entered password during a subsequent use of a keyboard, which allows physically proximate malicious users to obtain sensitive information by reading this character.
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.2
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.2
Apple Iphone Os 4.0
Apple Iphone Os 3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.1.2
Apple Iphone Os 3.1
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 3.1.3
NA
CVE-2011-3253
CalDAV in Apple iOS prior to 5 does not validate X.509 certificates for SSL sessions, which allows man-in-the-middle malicious users to spoof calendar servers and obtain sensitive information via an arbitrary certificate.
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2
Apple Iphone Os 3.2.1
Apple Iphone Os 3.0
Apple Iphone Os 4.3.5
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.2
NA
CVE-2011-3260
Buffer overflow in OfficeImport in Apple iOS prior to 5 allows remote malicious users to execute arbitrary code or cause a denial of service (application crash) via a crafted Microsoft Word document.
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 4.0.1
Apple Iphone Os 3.1
Apple Iphone Os 3.1.3
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.2
Apple Iphone Os 4.0
Apple Iphone Os 3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.1.2
NA
CVE-2011-3261
Double free vulnerability in OfficeImport in Apple iOS prior to 5 allows remote malicious users to execute arbitrary code or cause a denial of service (application crash) via a crafted Excel spreadsheet.
Apple Iphone Os 4.3.3
Apple Iphone Os 4.1
Apple Iphone Os 4.0
Apple Iphone Os 3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.1
Apple Iphone Os 3.0
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 4.0.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
Apple Iphone Os 4.3.0
Apple Iphone Os 4.2.8
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.1
NA
CVE-2011-3429
The Settings component in Apple iOS prior to 5 stores a cleartext parental-restrictions passcode in an unspecified file, which might allow physically proximate malicious users to obtain sensitive information by reading this file.
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 4.0.1
Apple Iphone Os 4.0
Apple Iphone Os 3.1
Apple Iphone Os 3.1.3
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.2
Apple Iphone Os 3.1.2
NA
CVE-2011-3431
The Home screen component in Apple iOS prior to 5 does not properly support a certain application-switching gesture, which might allow physically proximate malicious users to obtain sensitive state information by watching the device's screen.
Apple Iphone Os 4.3.0
Apple Iphone Os 4.2.8
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2.1
Apple Iphone Os 3.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.2
Apple Iphone Os 4.3.3
Apple Iphone Os 4.1
Apple Iphone Os 3.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
NA
CVE-2011-3434
The WiFi component in Apple iOS prior to 5 stores WiFi credentials in an unspecified file, which makes it easier for remote malicious users to obtain sensitive information via a crafted application.
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0
Apple Iphone Os 4.0.2
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.1
Apple Iphone Os 3.2
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.1
Apple Iphone Os 3.0
Apple Iphone Os 4.3.0
Apple Iphone Os 4.2.8
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
CVE-2006-4304
CVE-2023-26603
CVE-2024-28327
CVE-2023-50363
CVE-2024-21905
template injection
CVE-2024-3400
cross-site request forgery
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »