Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
apple iphone os 7.0.1 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2014-4423
The Accounts subsystem in Apple iOS prior to 8 allows malicious users to bypass a sandbox protection mechanism and obtain an active iCloud account's Apple ID and metadata via a crafted application.
Apple Iphone Os 7.0.6
Apple Iphone Os 7.0.5
Apple Iphone Os
Apple Iphone Os 7.1.1
Apple Iphone Os 7.1
Apple Iphone Os 7.0.4
Apple Iphone Os 7.0.3
Apple Iphone Os 7.0.2
Apple Iphone Os 7.0.1
Apple Iphone Os 7.0
5
CVSSv2
CVE-2014-4374
NSXMLParser in Foundation in Apple iOS prior to 8 allows malicious users to read arbitrary files via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.
Apple Mac Os X
Apple Iphone Os 7.0.1
Apple Iphone Os 7.0
Apple Iphone Os 7.0.6
Apple Iphone Os 7.1.1
Apple Iphone Os 7.1
Apple Iphone Os 7.0.3
Apple Iphone Os 7.0.2
Apple Iphone Os 7.0.5
Apple Iphone Os 7.0.4
Apple Iphone Os
7.8
CVSSv2
CVE-2014-1271
CoreCapture in Apple iOS prior to 7.1 and Apple TV prior to 6.1 does not properly validate IOKit API calls, which allows malicious users to cause a denial of service (assertion failure and device crash) via a crafted app.
Apple Iphone Os 7.0.2
Apple Iphone Os 7.0.4
Apple Iphone Os 7.0
Apple Iphone Os 7.0.1
Apple Iphone Os 7.0.3
Apple Iphone Os 7.0.5
Apple Iphone Os
Apple Tvos 6.0
Apple Tvos
Apple Tvos 6.0.1
6.3
CVSSv2
CVE-2014-1272
CrashHouseKeeping in Crash Reporting in Apple iOS prior to 7.1 and Apple TV prior to 6.1 allows local users to change arbitrary file permissions by leveraging a symlink.
Apple Tvos
Apple Tvos 6.0.1
Apple Tvos 6.0
Apple Iphone Os 7.0.1
Apple Iphone Os 7.0.3
Apple Iphone Os 7.0.5
Apple Iphone Os
Apple Iphone Os 7.0.2
Apple Iphone Os 7.0.4
Apple Iphone Os 7.0
6.8
CVSSv2
CVE-2014-1275
Buffer overflow in ImageIO in Apple iOS prior to 7.1 and Apple TV prior to 6.1 allows remote malicious users to execute arbitrary code or cause a denial of service (application crash) via crafted JPEG2000 data in a PDF document.
Apple Iphone Os 7.0.4
Apple Iphone Os
Apple Iphone Os 7.0
Apple Iphone Os 7.0.1
Apple Iphone Os 7.0.2
Apple Iphone Os 7.0.3
Apple Iphone Os 7.0.5
Apple Tvos
Apple Tvos 6.0.1
Apple Tvos 6.0
6.8
CVSSv2
CVE-2014-1291
WebKit, as used in Apple iOS prior to 7.1 and Apple TV prior to 6.1, allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1289, CVE-2014-1290,...
Apple Tvos 6.0
Apple Tvos
Apple Tvos 6.0.1
Apple Iphone Os 7.0
Apple Iphone Os 7.0.1
Apple Iphone Os
Apple Iphone Os 7.0.4
Apple Iphone Os 7.0.5
Apple Iphone Os 7.0.2
Apple Iphone Os 7.0.3
6.8
CVSSv2
CVE-2014-1289
WebKit, as used in Apple iOS prior to 7.1 and Apple TV prior to 6.1, allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1290, CVE-2014-1291,...
Apple Iphone Os 7.0.3
Apple Iphone Os 7.0.4
Apple Iphone Os 7.0.1
Apple Iphone Os 7.0.2
Apple Iphone Os 7.0
Apple Iphone Os 7.0.5
Apple Iphone Os
Apple Tvos 6.0.1
Apple Tvos 6.0
Apple Tvos
6.8
CVSSv2
CVE-2014-1292
WebKit, as used in Apple iOS prior to 7.1 and Apple TV prior to 6.1, allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1289, CVE-2014-1290,...
Apple Iphone Os 7.0
Apple Iphone Os 7.0.1
Apple Iphone Os 7.0.4
Apple Iphone Os 7.0.5
Apple Iphone Os
Apple Iphone Os 7.0.2
Apple Iphone Os 7.0.3
Apple Tvos 6.0.1
Apple Tvos 6.0
Apple Tvos
5.8
CVSSv2
CVE-2014-1267
The Configuration Profiles component in Apple iOS prior to 7.1 and Apple TV prior to 6.1 does not properly evaluate the expiration date of a mobile configuration profile, which allows malicious users to bypass intended access restrictions by using a profile after the date has pas...
Apple Tvos 6.0.1
Apple Tvos
Apple Tvos 6.0
Apple Iphone Os
Apple Iphone Os 7.0.1
Apple Iphone Os 7.0.2
Apple Iphone Os 7.0.3
Apple Iphone Os 7.0.4
Apple Iphone Os 7.0
Apple Iphone Os 7.0.5
5.8
CVSSv2
CVE-2014-1273
dyld in Apple iOS prior to 7.1 and Apple TV prior to 6.1 allows malicious users to bypass code-signing requirements by leveraging use of text-relocation instructions in a dynamic library.
Apple Tvos
Apple Tvos 6.0.1
Apple Tvos 6.0
Apple Iphone Os 7.0.3
Apple Iphone Os 7.0.5
Apple Iphone Os 7.0.4
Apple Iphone Os
Apple Iphone Os 7.0
Apple Iphone Os 7.0.1
Apple Iphone Os 7.0.2
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-36920
buffer overflow
CVE-2024-36913
CVE-2024-5497
CVE-2024-23917
CVE-2024-4956
server-side request forgery
CVE-2024-35468
SSTI
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »