Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
apple iphone os 3.1 vulnerabilities and exploits
(subscribe to this query)
4.9
CVSSv2
CVE-2010-1776
Find My iPhone on iOS 2.0 up to and including 3.1.3 for iPhone 3G and later and iOS 2.1 up to and including 3.1.3 for iPod touch (2nd generation) and later, when Find My iPhone is disabled, allows remote authenticated users with an associated MobileMe account to wipe the device.
Apple Iphone Os 2.1.1
Apple Iphone Os 3.1.3
Apple Iphone Os 2.2.1
Apple Iphone Os 3.0
Apple Iphone Os 3.0.1
Apple Iphone Os 3.1
Apple Iphone Os 3.1.2
Apple Iphone Os 2.1
Apple Iphone Os 2.2
4.3
CVSSv2
CVE-2011-3426
Cross-site scripting (XSS) vulnerability in Safari in Apple iOS prior to 5 allows remote web servers to inject arbitrary web script or HTML via a file accompanied by a "Content-Disposition: attachment" HTTP header.
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2.1
Apple Iphone Os 3.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.2
Apple Iphone Os 4.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.2
Apple Iphone Os 3.1.2
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 3.1.3
2.1
CVSSv2
CVE-2011-3429
The Settings component in Apple iOS prior to 5 stores a cleartext parental-restrictions passcode in an unspecified file, which might allow physically proximate malicious users to obtain sensitive information by reading this file.
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 4.0.1
Apple Iphone Os 4.0
Apple Iphone Os 3.1
Apple Iphone Os 3.1.3
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.2
Apple Iphone Os 3.1.2
9.3
CVSSv2
CVE-2011-3430
The Settings component in Apple iOS prior to 5, when a configuration profile is used for a locale other than English, does not properly implement localization, which makes it easier for malicious users to have an unspecified impact by leveraging incorrect configuration display.
Apple Iphone Os 4.3.3
Apple Iphone Os 4.0
Apple Iphone Os 3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.1
Apple Iphone Os 3.0
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
Apple Iphone Os 4.3.0
Apple Iphone Os 4.2.8
Apple Iphone Os 4.0.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.1
2.1
CVSSv2
CVE-2011-3431
The Home screen component in Apple iOS prior to 5 does not properly support a certain application-switching gesture, which might allow physically proximate malicious users to obtain sensitive state information by watching the device's screen.
Apple Iphone Os 4.3.0
Apple Iphone Os 4.2.8
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2.1
Apple Iphone Os 3.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.2
Apple Iphone Os 4.3.3
Apple Iphone Os 4.1
Apple Iphone Os 3.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
5
CVSSv2
CVE-2011-3432
The UIKit Alerts component in Apple iOS prior to 5 allows remote malicious users to cause a denial of service (device hang) via a long tel: URL that triggers a large size for the acceptance dialog.
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 4.0
Apple Iphone Os 3.2
Apple Iphone Os 3.1.2
Apple Iphone Os 3.1
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 4.0.1
Apple Iphone Os 3.1.3
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
4.3
CVSSv2
CVE-2011-3434
The WiFi component in Apple iOS prior to 5 stores WiFi credentials in an unspecified file, which makes it easier for remote malicious users to obtain sensitive information via a crafted application.
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0
Apple Iphone Os 4.0.2
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.1
Apple Iphone Os 3.2
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.1
Apple Iphone Os 3.0
Apple Iphone Os 4.3.0
Apple Iphone Os 4.2.8
2.1
CVSSv2
CVE-2011-3245
The Keyboards component in Apple iOS prior to 5 displays the final character of an entered password during a subsequent use of a keyboard, which allows physically proximate malicious users to obtain sensitive information by reading this character.
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.2
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.2
Apple Iphone Os 4.0
Apple Iphone Os 3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.1.2
Apple Iphone Os 3.1
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 3.1.3
2.6
CVSSv2
CVE-2011-3253
CalDAV in Apple iOS prior to 5 does not validate X.509 certificates for SSL sessions, which allows man-in-the-middle malicious users to spoof calendar servers and obtain sensitive information via an arbitrary certificate.
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2
Apple Iphone Os 3.2.1
Apple Iphone Os 3.0
Apple Iphone Os 4.3.5
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.2
4.3
CVSSv2
CVE-2011-3255
CFNetwork in Apple iOS prior to 5 stores AppleID credentials in an unspecified file, which makes it easier for remote malicious users to obtain sensitive information via a crafted application.
Apple Iphone Os 4.3.0
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 4.0.1
Apple Iphone Os 3.1
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.0
Apple Iphone Os 3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
HTML injection
CVE-2024-35894
SQL
CVE-2024-5105
CVE-2014-100005
CVE-2024-35895
unauthorized
CVE-2024-22120
CVE-2024-35890
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »