Latest CVE Feed
-
7.4
HIGHCVE-2017-13890
An issue was discovered in certain Apple products. macOS before 10.13.4 is affected. macOS before 10.13 is affected. The issue involves the "CoreTypes" component. It allows remote attackers to trigger disk-image mounting via a crafted web site.... Read more
- EPSS Score: %0.64
- Published: Apr. 03, 2018
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2017-13889
In macOS High Sierra before 10.13.3, Security Update 2018-001 Sierra, and Security Update 2018-001 El Capitan, a logic error existed in the validation of credentials. This was addressed with improved credential validation.... Read more
- EPSS Score: %0.41
- Published: Jan. 11, 2019
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2017-13888
In iOS before 11.2, a type confusion issue was addressed with improved memory handling.... Read more
Affected Products : iphone_os- EPSS Score: %0.24
- Published: Jan. 11, 2019
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2017-13887
In macOS High Sierra before 10.13.2, a logic issue existed in APFS when deleting keys during hibernation. This was addressed with improved state management.... Read more
- EPSS Score: %0.24
- Published: Jan. 11, 2019
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2017-13886
In macOS High Sierra before 10.13.2, an access issue existed with privileged WiFi system configuration. This issue was addressed with additional restrictions.... Read more
- EPSS Score: %0.35
- Published: Jan. 11, 2019
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2017-13885
An issue was discovered in certain Apple products. iOS before 11.2 is affected. Safari before 11.0.2 is affected. iCloud before 7.2 on Windows is affected. iTunes before 12.7.2 on Windows is affected. tvOS before 11.2 is affected. The issue involves the "... Read more
- EPSS Score: %0.94
- Published: Apr. 03, 2018
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2017-13884
An issue was discovered in certain Apple products. iOS before 11.2 is affected. Safari before 11.0.2 is affected. iCloud before 7.2 on Windows is affected. iTunes before 12.7.2 on Windows is affected. tvOS before 11.2 is affected. watchOS before 4.2 is af... Read more
- EPSS Score: %0.94
- Published: Apr. 03, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2017-13880
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 11.2, watchOS 4.2. An application may be able to execute arbitrary code with kernel privilege.... Read more
- EPSS Score: %0.20
- Published: Dec. 23, 2021
- Modified: Nov. 21, 2024
-
4.3
MEDIUMCVE-2017-13877
An issue was discovered in certain Apple products. iOS before 11 is affected. The issue involves the "Sandbox Profiles" component. It allows attackers to determine whether arbitrary files exist via a crafted app.... Read more
Affected Products : iphone_os- EPSS Score: %0.19
- Published: Apr. 03, 2018
- Modified: Nov. 21, 2024
-
4.3
MEDIUMCVE-2017-13873
An issue was discovered in certain Apple products. iOS before 11 is affected. macOS before 10.13 is affected. tvOS before 11 is affected. watchOS before 4 is affected. The issue involves the "Kernel" component. It allows attackers to obtain sensitive netw... Read more
- EPSS Score: %0.34
- Published: Apr. 03, 2018
- Modified: Nov. 21, 2024
-
5.9
MEDIUMCVE-2017-13863
An issue was discovered in certain Apple products. iOS before 11 is affected. The issue involves the "APNs" component. It allows man-in-the-middle attackers to track users by leveraging the transmission of client certificates.... Read more
Affected Products : iphone_os- EPSS Score: %0.13
- Published: Apr. 03, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2017-13854
An issue was discovered in certain Apple products. iOS before 11 is affected. macOS before 10.13 is affected. tvOS before 11 is affected. watchOS before 4 is affected. The issue involves the "Kernel" component. It allows attackers to execute arbitrary cod... Read more
- EPSS Score: %0.24
- Published: Apr. 03, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2017-13853
An issue was discovered in certain Apple products. macOS before 10.12.6 is affected. The issue involves the "AppleGraphicsControl" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corrup... Read more
- EPSS Score: %0.25
- Published: Apr. 03, 2018
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2017-13851
An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "DesktopServices" component. It allows local users to bypass intended access restrictions on home folder files.... Read more
- EPSS Score: %0.05
- Published: Apr. 03, 2018
- Modified: Nov. 21, 2024
-
7.1
HIGHCVE-2017-13850
An issue was discovered in certain Apple products. macOS before 10.12.6 is affected. The issue involves the "Font Importer" component. It allows remote attackers to cause a denial of service (memory corruption) or obtain sensitive information from process... Read more
- EPSS Score: %0.32
- Published: Apr. 03, 2018
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2017-13839
An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "Spotlight" component. It allows local users to see results for other users' files.... Read more
- EPSS Score: %0.05
- Published: Apr. 03, 2018
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2017-13837
An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "Installer" component. It does not properly restrict an app's entitlements for accessing the FileVault unlock key.... Read more
- EPSS Score: %0.32
- Published: Apr. 03, 2018
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2017-13835
A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS High Sierra 10.13. An application may be able to execute arbitrary code with elevated privileges.... Read more
- EPSS Score: %0.37
- Published: Dec. 23, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2017-13827
An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "kext tools" component. It allows attackers to execute arbitrary code in a privileged context via a crafted app that performs kext loading.... Read more
- EPSS Score: %0.23
- Published: Apr. 03, 2018
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2017-13806
An issue was discovered in certain Apple products. iOS before 11 is affected. The issue involves the "Profiles" component. It does not enforce the configuration profile's settings for whether pairings are allowed.... Read more
Affected Products : iphone_os- EPSS Score: %0.19
- Published: Apr. 03, 2018
- Modified: Nov. 21, 2024