Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
apple iphone os 4.2 vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2011-0159
The Safari Settings feature in Safari in Apple iOS 4.x prior to 4.3 does not properly implement the clearing of cookies during execution of the Safari application, which might make it easier for remote web servers to track users by setting a cookie.
Apple Iphone Os 4.0
Apple Iphone Os 4.1
Apple Iphone Os 4.2
4.3
CVSSv2
CVE-2011-3254
Cross-site scripting (XSS) vulnerability in Calendar in Apple iOS prior to 5 allows remote malicious users to inject arbitrary web script or HTML via an invitation note.
Apple Iphone Os 4.2
Apple Iphone Os 4.3.0
Apple Iphone Os 4.3.2
Apple Iphone Os 4.2.1
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.9
Apple Iphone Os 4.3.4
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.3
5
CVSSv2
CVE-2011-3259
The kernel in Apple iOS prior to 5 and Apple TV prior to 4.4 does not properly recover memory allocated for incomplete TCP connections, which allows remote malicious users to cause a denial of service (resource consumption) by making many connection attempts.
Apple Apple Tv 4.1
Apple Apple Tv 4.2
Apple Apple Tv 4.3
Apple Apple Tv 4.0
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.2
Apple Iphone Os 4.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.2.1
Apple Iphone Os 3.0
Apple Iphone Os 4.3.5
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 4.0.1
Apple Iphone Os 3.1
Apple Iphone Os 3.1.3
Apple Iphone Os 4.1
Apple Iphone Os 3.2
Apple Iphone Os 3.1.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.0
2.6
CVSSv2
CVE-2011-3427
The Data Security component in Apple iOS prior to 5 and Apple TV prior to 4.4 does not properly restrict use of the MD5 hash algorithm within X.509 certificates, which makes it easier for man-in-the-middle malicious users to spoof servers or obtain sensitive information via a cra...
Apple Apple Tv 4.2
Apple Apple Tv 4.3
Apple Apple Tv 4.0
Apple Apple Tv 4.1
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.1
Apple Iphone Os 3.2
Apple Iphone Os 3.1
Apple Iphone Os 3.0
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 4.0.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
Apple Iphone Os 4.3.0
4.3
CVSSv2
CVE-2010-3828
iAd Content Display in Apple iOS prior to 4.2 allows man-in-the-middle malicious users to make calls via a crafted URL in an ad.
Apple Iphone Os 3.2.2
Apple Iphone Os 3.2.1
Apple Iphone Os 2.2.1
Apple Iphone Os 2.2
Apple Iphone Os 1.1.3
Apple Iphone Os 1.1.2
Apple Iphone Os 4.0.1
Apple Iphone Os 4.0
Apple Iphone Os 3.0.1
Apple Iphone Os 3.0
Apple Iphone Os 1.1.5
Apple Iphone Os 1.1.4
Apple Iphone Os 1.0.0
Apple Iphone Os 2.0
Apple Iphone Os 3.2
Apple Iphone Os 3.1.3
Apple Iphone Os 2.1.1
Apple Iphone Os 2.1
Apple Iphone Os 2.0.2
Apple Iphone Os 1.1.1
Apple Iphone Os 1.1.0
Apple Iphone Os
4.3
CVSSv2
CVE-2011-3441
libinfo in Apple iOS prior to 5.0.1 does not properly formulate domain-name queries, which allows remote malicious users to obtain sensitive information via a crafted DNS hostname.
Apple Iphone Os 4.1
Apple Iphone Os 2.1.1
Apple Iphone Os 3.0
Apple Iphone Os 3.2.2
Apple Iphone Os 4.0.2
Apple Iphone Os 2.0.0
Apple Iphone Os 1.1.3
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.1
Apple Iphone Os 1.1.4
Apple Iphone Os 1.1.5
Apple Iphone Os 2.2
Apple Iphone Os 2.1
Apple Iphone Os 4.0
Apple Iphone Os 1.0.2
Apple Iphone Os 3.1
Apple Iphone Os 1.1.0
Apple Iphone Os 4.3.5
Apple Iphone Os 1.0.0
Apple Iphone Os 2.2.1
Apple Iphone Os 2.0.2
Apple Iphone Os 4.3.1
7.2
CVSSv2
CVE-2010-3830
Networking in Apple iOS prior to 4.2 accesses an invalid pointer during the processing of packet filter rules, which allows local users to gain privileges via unspecified vectors.
Apple Iphone Os 2.0
Apple Iphone Os 4.0.2
Apple Iphone Os 4.0.1
Apple Iphone Os 3.1
Apple Iphone Os 3.0.1
Apple Iphone Os 2.0.1
Apple Iphone Os 2.0.0
Apple Iphone Os 1.0.1
Apple Iphone Os 1.0.0
Apple Iphone Os 4.0
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
Apple Iphone Os 2.2.1
Apple Iphone Os 1.1.5
Apple Iphone Os 1.1.4
Apple Iphone Os
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
Apple Iphone Os 2.1
Apple Iphone Os 2.0.2
Apple Iphone Os 1.1.0
Apple Iphone Os 1.0.2
1 EDB exploit
4.3
CVSSv2
CVE-2010-3827
Apple iOS prior to 4.2 does not properly validate signatures before displaying a configuration profile in the configuration installation utility, which allows remote malicious users to spoof profiles via unspecified vectors.
Apple Iphone Os 4.0.1
Apple Iphone Os 4.0
Apple Iphone Os 3.0
Apple Iphone Os 2.2.1
Apple Iphone Os 1.1.5
Apple Iphone Os 1.1.4
Apple Iphone Os 1.0.0
Apple Iphone Os
Apple Iphone Os 4.0.2
Apple Iphone Os 3.1.2
Apple Iphone Os 3.1
Apple Iphone Os 3.0.1
Apple Iphone Os 2.0.1
Apple Iphone Os 2.0.0
Apple Iphone Os 1.0.2
Apple Iphone Os 1.0.1
Apple Iphone Os 2.0
Apple Iphone Os 3.2
Apple Iphone Os 3.1.3
Apple Iphone Os 2.1
Apple Iphone Os 2.0.2
Apple Iphone Os 1.1.1
4.3
CVSSv2
CVE-2010-3831
Photos in Apple iOS prior to 4.2 enables support for HTTP Basic Authentication over an unencrypted connection, which allows man-in-the-middle malicious users to read MobileMe account passwords by spoofing a MobileMe Gallery server during a "Send to MobileMe" action.
Apple Iphone Os 4.0
Apple Iphone Os 3.2.2
Apple Iphone Os 3.2.1
Apple Iphone Os 2.2.1
Apple Iphone Os 2.2
Apple Iphone Os 1.1.4
Apple Iphone Os 1.1.3
Apple Iphone Os 3.2
Apple Iphone Os 3.1.3
Apple Iphone Os 2.1.1
Apple Iphone Os 2.1
Apple Iphone Os 1.1.2
Apple Iphone Os 1.1.1
Apple Iphone Os 2.0
Apple Iphone Os
Apple Iphone Os 3.1.2
Apple Iphone Os 3.1
Apple Iphone Os 2.0.2
Apple Iphone Os 2.0.1
Apple Iphone Os 1.1.0
Apple Iphone Os 1.0.2
Apple Iphone Os 4.0.2
5.8
CVSSv2
CVE-2010-3829
WebKit in Apple iOS prior to 4.2 allows remote malicious users to bypass the remote image loading setting in Mail via an HTML LINK element with a DNS prefetching property, as demonstrated by an HTML e-mail message that uses a LINK element for X-Confirm-Reading-To functionality, a...
Apple Iphone Os 3.2.2
Apple Iphone Os 3.2.1
Apple Iphone Os 2.2.1
Apple Iphone Os 2.2
Apple Iphone Os 1.1.3
Apple Iphone Os 1.1.2
Apple Iphone Os 2.0
Apple Iphone Os 3.2
Apple Iphone Os 3.1.3
Apple Iphone Os 2.1.1
Apple Iphone Os 2.1
Apple Iphone Os 2.0.2
Apple Iphone Os 1.1.1
Apple Iphone Os 1.1.0
Apple Iphone Os 4.0.1
Apple Iphone Os 4.0
Apple Iphone Os 3.0.1
Apple Iphone Os 3.0
Apple Iphone Os 1.1.5
Apple Iphone Os 1.1.4
Apple Iphone Os 1.0.0
Apple Iphone Os
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48700
CVE-2022-48689
CVE-2024-27956
CVE-2023-6363
SQL
NULL pointer dereference
CVE-2023-41830
CVE-2015-2051
arbitrary
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »