Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
apple iphone os 4.2 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2011-0159
The Safari Settings feature in Safari in Apple iOS 4.x prior to 4.3 does not properly implement the clearing of cookies during execution of the Safari application, which might make it easier for remote web servers to track users by setting a cookie.
Apple Iphone Os 4.1
Apple Iphone Os 4.2
Apple Iphone Os 4.0
NA
CVE-2011-3254
Cross-site scripting (XSS) vulnerability in Calendar in Apple iOS prior to 5 allows remote malicious users to inject arbitrary web script or HTML via an invitation note.
Apple Iphone Os 4.3.2
Apple Iphone Os 4.2.9
Apple Iphone Os 4.2.8
Apple Iphone Os 4.3.4
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.1
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2
Apple Iphone Os 4.2.1
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.0
NA
CVE-2011-3259
The kernel in Apple iOS prior to 5 and Apple TV prior to 4.4 does not properly recover memory allocated for incomplete TCP connections, which allows remote malicious users to cause a denial of service (resource consumption) by making many connection attempts.
Apple Apple Tv 4.2
Apple Apple Tv 4.1
Apple Apple Tv 4.0
Apple Apple Tv 4.3
Apple Iphone Os 4.0
Apple Iphone Os 4.3.2
Apple Iphone Os 4.0.2
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2
Apple Iphone Os 4.2.8
Apple Iphone Os 4.1
Apple Iphone Os 3.1.2
Apple Iphone Os 4.3.5
Apple Iphone Os 3.1.3
Apple Iphone Os 4.3.1
Apple Iphone Os 4.2.5
Apple Iphone Os 3.2.1
Apple Iphone Os 3.1
Apple Iphone Os 4.2.1
Apple Iphone Os 3.0
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.0
NA
CVE-2011-3427
The Data Security component in Apple iOS prior to 5 and Apple TV prior to 4.4 does not properly restrict use of the MD5 hash algorithm within X.509 certificates, which makes it easier for man-in-the-middle malicious users to spoof servers or obtain sensitive information via a cra...
Apple Apple Tv 4.2
Apple Apple Tv 4.1
Apple Apple Tv 4.0
Apple Apple Tv 4.3
Apple Iphone Os 4.0
Apple Iphone Os 4.3.2
Apple Iphone Os 4.0.2
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2
Apple Iphone Os 4.2.8
Apple Iphone Os 4.1
Apple Iphone Os 3.1.2
Apple Iphone Os 4.3.5
Apple Iphone Os 3.1.3
Apple Iphone Os 4.3.1
Apple Iphone Os 4.2.5
Apple Iphone Os 3.2.1
Apple Iphone Os 3.1
Apple Iphone Os 4.2.1
Apple Iphone Os 3.0
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.0
NA
CVE-2011-3441
libinfo in Apple iOS prior to 5.0.1 does not properly formulate domain-name queries, which allows remote malicious users to obtain sensitive information via a crafted DNS hostname.
Apple Iphone Os 2.0.2
Apple Iphone Os 3.0
Apple Iphone Os 4.0
Apple Iphone Os 3.2
Apple Iphone Os 3.1.3
Apple Iphone Os 1.0.2
Apple Iphone Os 1.0
Apple Iphone Os 1.1.2
Apple Iphone Os 4.3.2
Apple Iphone Os 4.0.2
Apple Iphone Os 2.2
Apple Iphone Os 4.0.1
Apple Iphone Os 1.1.4
Apple Iphone Os 1.1.1
Apple Iphone Os 3.0.1
Apple Iphone Os 1.0.1
Apple Iphone Os 4.2.9
Apple Iphone Os 5.0
Apple Iphone Os 4.2.8
Apple Iphone Os 4.1
Apple Iphone Os 2.0.0
Apple Iphone Os 3.1.2
NA
CVE-2011-3440
The Passcode Lock feature in Apple iOS prior to 5.0.1 on the iPad 2 does not properly implement the locked state, which allows physically proximate malicious users to access data by opening a Smart Cover during power-off confirmation.
Apple Iphone Os
Apple Iphone Os 1.0
Apple Iphone Os 1.0.0
Apple Iphone Os 1.0.1
Apple Iphone Os 1.0.2
Apple Iphone Os 1.1
Apple Iphone Os 1.1.0
Apple Iphone Os 1.1.1
Apple Iphone Os 1.1.2
Apple Iphone Os 1.1.3
Apple Iphone Os 1.1.4
Apple Iphone Os 1.1.5
Apple Iphone Os 2.0
Apple Iphone Os 2.0.1
Apple Iphone Os 2.0.2
Apple Iphone Os 2.1
Apple Iphone Os 2.1.1
Apple Iphone Os 2.2
Apple Iphone Os 2.2.1
Apple Iphone Os 3.0
Apple Iphone Os 3.0.1
Apple Iphone Os 3.1
NA
CVE-2010-3828
iAd Content Display in Apple iOS prior to 4.2 allows man-in-the-middle malicious users to make calls via a crafted URL in an ad.
Apple Iphone Os 3.0
Apple Iphone Os 3.2
Apple Iphone Os 3.1.3
Apple Iphone Os 1.0.2
Apple Iphone Os 4.0.2
Apple Iphone Os 2.2
Apple Iphone Os 1.1.1
Apple Iphone Os
Apple Iphone Os 2.0.0
Apple Iphone Os 3.1.2
Apple Iphone Os 3.0.1
Apple Iphone Os 1.1.2
Apple Iphone Os 3.1
Apple Iphone Os 1.1.3
Apple Iphone Os 1.1.0
Apple Iphone Os 1.0.1
Apple Iphone Os 2.1
Apple Iphone Os 1.1.5
Apple Iphone Os 4.0.1
Apple Iphone Os 2.1.1
Apple Iphone Os 1.1.4
Apple Iphone Os 1.0.0
NA
CVE-2010-3830
Networking in Apple iOS prior to 4.2 accesses an invalid pointer during the processing of packet filter rules, which allows local users to gain privileges via unspecified vectors.
Apple Iphone Os 3.0
Apple Iphone Os 3.2
Apple Iphone Os 3.1.3
Apple Iphone Os 1.0.2
Apple Iphone Os 4.0.2
Apple Iphone Os 2.2
Apple Iphone Os 1.1.1
Apple Iphone Os
Apple Iphone Os 2.0.0
Apple Iphone Os 3.1.2
Apple Iphone Os 3.0.1
Apple Iphone Os 1.1.2
Apple Iphone Os 3.1
Apple Iphone Os 1.1.3
Apple Iphone Os 1.1.0
Apple Iphone Os 1.0.1
Apple Iphone Os 2.1
Apple Iphone Os 1.1.5
Apple Iphone Os 4.0.1
Apple Iphone Os 2.1.1
Apple Iphone Os 1.1.4
Apple Iphone Os 1.0.0
1 EDB exploit
NA
CVE-2010-3827
Apple iOS prior to 4.2 does not properly validate signatures before displaying a configuration profile in the configuration installation utility, which allows remote malicious users to spoof profiles via unspecified vectors.
Apple Iphone Os 3.0
Apple Iphone Os 3.2
Apple Iphone Os 3.1.3
Apple Iphone Os 1.0.2
Apple Iphone Os 4.0.2
Apple Iphone Os 2.2
Apple Iphone Os 1.1.1
Apple Iphone Os
Apple Iphone Os 2.0.0
Apple Iphone Os 3.1.2
Apple Iphone Os 3.0.1
Apple Iphone Os 1.1.2
Apple Iphone Os 3.1
Apple Iphone Os 1.1.3
Apple Iphone Os 1.1.0
Apple Iphone Os 1.0.1
Apple Iphone Os 2.1
Apple Iphone Os 1.1.5
Apple Iphone Os 4.0.1
Apple Iphone Os 2.1.1
Apple Iphone Os 1.1.4
Apple Iphone Os 1.0.0
NA
CVE-2010-3831
Photos in Apple iOS prior to 4.2 enables support for HTTP Basic Authentication over an unencrypted connection, which allows man-in-the-middle malicious users to read MobileMe account passwords by spoofing a MobileMe Gallery server during a "Send to MobileMe" action.
Apple Iphone Os 3.0
Apple Iphone Os 3.2
Apple Iphone Os 3.1.3
Apple Iphone Os 1.0.2
Apple Iphone Os 4.0.2
Apple Iphone Os 2.2
Apple Iphone Os 1.1.1
Apple Iphone Os
Apple Iphone Os 2.0.0
Apple Iphone Os 3.1.2
Apple Iphone Os 3.0.1
Apple Iphone Os 1.1.2
Apple Iphone Os 3.1
Apple Iphone Os 1.1.3
Apple Iphone Os 1.1.0
Apple Iphone Os 1.0.1
Apple Iphone Os 2.1
Apple Iphone Os 1.1.5
Apple Iphone Os 4.0.1
Apple Iphone Os 2.1.1
Apple Iphone Os 1.1.4
Apple Iphone Os 1.0.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
type confusion
IMAP
CVE-2024-36103
CVE-2024-28995
CVE-2024-37325
CVE-2024-30078
CVE-2024-30082
SQL injection
CVE-2024-30052
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »