Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
apple iphone os 4.3.1 vulnerabilities and exploits
(subscribe to this query)
383
VMScore
CVE-2011-0195
The generate-id XPath function in libxslt in Apple iOS 4.3.x prior to 4.3.2 allows remote malicious users to obtain potentially sensitive information about heap memory addresses via a crafted web site. NOTE: this may overlap CVE-2011-1202.
Apple Iphone Os 4.3.0
Apple Iphone Os 4.3.1
641
VMScore
CVE-2011-3442
The kernel in Apple iOS prior to 5.0.1 does not ensure the validity of flag combinations for an mmap system call, which allows local users to execute arbitrary unsigned code via a crafted app.
Apple Iphone Os 4.3.0
Apple Iphone Os 4.3.1
Apple Iphone Os 5.0
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.4
383
VMScore
CVE-2011-3254
Cross-site scripting (XSS) vulnerability in Calendar in Apple iOS prior to 5 allows remote malicious users to inject arbitrary web script or HTML via an invitation note.
Apple Iphone Os 4.2
Apple Iphone Os 4.3.0
Apple Iphone Os 4.3.2
Apple Iphone Os 4.2.1
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.9
Apple Iphone Os 4.3.4
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.3
383
VMScore
CVE-2011-3256
FreeType 2 prior to 2.4.7, as used in CoreGraphics in Apple iOS prior to 5, Mandriva Enterprise Server 5, and possibly other products, allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font, a different vulnerab...
Apple Iphone Os 4.3.3
Apple Iphone Os 4.1
Apple Iphone Os 4.0
Apple Iphone Os 3.2
Apple Iphone Os 3.1
Apple Iphone Os 3.0
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 4.0.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
Apple Iphone Os 4.3.0
Apple Iphone Os 4.2.8
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.2
383
VMScore
CVE-2011-3426
Cross-site scripting (XSS) vulnerability in Safari in Apple iOS prior to 5 allows remote web servers to inject arbitrary web script or HTML via a file accompanied by a "Content-Disposition: attachment" HTTP header.
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2.1
Apple Iphone Os 3.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.2
Apple Iphone Os 4.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.2
Apple Iphone Os 3.1.2
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 3.1.3
187
VMScore
CVE-2011-3429
The Settings component in Apple iOS prior to 5 stores a cleartext parental-restrictions passcode in an unspecified file, which might allow physically proximate malicious users to obtain sensitive information by reading this file.
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 4.0.1
Apple Iphone Os 4.0
Apple Iphone Os 3.1
Apple Iphone Os 3.1.3
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.2
Apple Iphone Os 3.1.2
828
VMScore
CVE-2011-3430
The Settings component in Apple iOS prior to 5, when a configuration profile is used for a locale other than English, does not properly implement localization, which makes it easier for malicious users to have an unspecified impact by leveraging incorrect configuration display.
Apple Iphone Os 4.3.3
Apple Iphone Os 4.0
Apple Iphone Os 3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.1
Apple Iphone Os 3.0
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
Apple Iphone Os 4.3.0
Apple Iphone Os 4.2.8
Apple Iphone Os 4.0.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.1
445
VMScore
CVE-2011-3432
The UIKit Alerts component in Apple iOS prior to 5 allows remote malicious users to cause a denial of service (device hang) via a long tel: URL that triggers a large size for the acceptance dialog.
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 4.0
Apple Iphone Os 3.2
Apple Iphone Os 3.1.2
Apple Iphone Os 3.1
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 4.0.1
Apple Iphone Os 3.1.3
Apple Iphone Os 4.3.1
Apple Iphone Os 4.3.0
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
383
VMScore
CVE-2011-3434
The WiFi component in Apple iOS prior to 5 stores WiFi credentials in an unspecified file, which makes it easier for remote malicious users to obtain sensitive information via a crafted application.
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0
Apple Iphone Os 4.0.2
Apple Iphone Os 4.0.1
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.1
Apple Iphone Os 3.2
Apple Iphone Os 4.2.5
Apple Iphone Os 4.2.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.1
Apple Iphone Os 3.0
Apple Iphone Os 4.3.0
Apple Iphone Os 4.2.8
383
VMScore
CVE-2011-3255
CFNetwork in Apple iOS prior to 5 stores AppleID credentials in an unspecified file, which makes it easier for remote malicious users to obtain sensitive information via a crafted application.
Apple Iphone Os 4.3.0
Apple Iphone Os 4.2.8
Apple Iphone Os 4.2.5
Apple Iphone Os 4.0.1
Apple Iphone Os 3.1
Apple Iphone Os 4.3.2
Apple Iphone Os 4.3.1
Apple Iphone Os 4.0.2
Apple Iphone Os 3.2.1
Apple Iphone Os 4.3.5
Apple Iphone Os 4.3.3
Apple Iphone Os 4.0
Apple Iphone Os 3.2
Apple Iphone Os 3.2.2
Apple Iphone Os 3.0
Apple Iphone Os 4.2.1
Apple Iphone Os 4.1
Apple Iphone Os 3.1.3
Apple Iphone Os 3.1.2
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-30310
CVE-2024-21683
CVE-2024-22187
chrome
deserialization
XPath injection
CVE-2024-27842
denial of service
CVE-2024-24851
google
CVE-2024-35400
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »