Latest CVE Feed
-
9.3
HIGHCVE-2016-4731
WebKit in Apple iOS before 10 and Safari before 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-4729.... Read more
- EPSS Score: %1.20
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2016-4730
WebKit in Apple iOS before 10, Safari before 10, and tvOS before 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-4611, CVE-2016-4733, CVE... Read more
- EPSS Score: %1.65
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2016-4729
WebKit in Apple iOS before 10 and Safari before 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-4731.... Read more
- EPSS Score: %1.20
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-4728
WebKit in Apple iOS before 10, tvOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 mishandles error prototypes, which allows remote attackers to execute arbitrary code via a crafted web site.... Read more
- EPSS Score: %1.04
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2016-4727
IOThunderboltFamily in Apple OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.... Read more
- EPSS Score: %0.36
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2016-4726
IOAcceleratorFamily in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.... Read more
- EPSS Score: %0.26
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
8.1
HIGHCVE-2016-4725
IOAcceleratorFamily in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (memory corruption) via a crafted web site.... Read more
- EPSS Score: %1.31
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2016-4724
IOAcceleratorFamily in Apple iOS before 10 and OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL pointer dereference) via a crafted app.... Read more
- EPSS Score: %0.17
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2016-4723
Intel Graphics Driver in Apple OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.... Read more
- EPSS Score: %0.36
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
7.1
HIGHCVE-2016-4722
The IDS - Connectivity component in Apple iOS before 10 and OS X before 10.12 allows man-in-the-middle attackers to conduct Call Relay spoofing attacks and cause a denial of service via unspecified vectors.... Read more
- EPSS Score: %2.51
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
6.5
MEDIUMCVE-2016-4718
Buffer overflow in FontParser in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows remote attackers to obtain sensitive information from process memory via a crafted font file.... Read more
- EPSS Score: %2.32
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
5.0
MEDIUMCVE-2016-4717
The File Bookmark component in Apple OS X before 10.12 mishandles scoped-bookmark file descriptors, which allows attackers to cause a denial of service via a crafted app.... Read more
- EPSS Score: %0.33
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-4716
diskutil in DiskArbitration in Apple OS X before 10.12 allows local users to gain privileges via unspecified vectors.... Read more
- EPSS Score: %0.14
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
4.3
MEDIUMCVE-2016-4715
The Date & Time Pref Pane component in Apple OS X before 10.12 mishandles the .GlobalPreferences file, which allows attackers to discover a user's location via a crafted app.... Read more
- EPSS Score: %0.33
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
5.3
MEDIUMCVE-2016-4713
CoreDisplay in Apple OS X before 10.12 allows attackers to view arbitrary users' screens by leveraging screen-sharing access.... Read more
- EPSS Score: %0.41
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2016-4712
CoreCrypto in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows attackers to execute arbitrary code or cause a denial of service (out-of-bounds write) via a crafted app.... Read more
- EPSS Score: %0.26
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-4711
CCrypt in corecrypto in CommonCrypto in Apple iOS before 10 and OS X before 10.12 allows attackers to discover cleartext information by leveraging a function call that specifies the same buffer for input and output.... Read more
- EPSS Score: %0.48
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-4710
WindowServer in Apple OS X before 10.12 allows local users to obtain root access via vectors that leverage "type confusion," a different vulnerability than CVE-2016-4709.... Read more
- EPSS Score: %0.05
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-4709
WindowServer in Apple OS X before 10.12 allows local users to obtain root access via vectors that leverage "type confusion," a different vulnerability than CVE-2016-4710.... Read more
- EPSS Score: %0.05
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
6.5
MEDIUMCVE-2016-4708
CFNetwork in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 misparses the Set-Cookie header, which allows remote attackers to obtain sensitive information via a crafted HTTP response.... Read more
- EPSS Score: %4.17
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025