Latest CVE Feed
-
6.8
MEDIUMCVE-2015-7097
WebKit in Apple iOS before 9.2, Safari before 9.0.2, and tvOS before 9.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-20... Read more
- EPSS Score: %1.09
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
6.8
MEDIUMCVE-2015-7096
WebKit in Apple iOS before 9.2, Safari before 9.0.2, and tvOS before 9.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-20... Read more
- EPSS Score: %1.03
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
6.8
MEDIUMCVE-2015-7095
WebKit in Apple iOS before 9.2, Safari before 9.0.2, and tvOS before 9.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-20... Read more
- EPSS Score: %1.09
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
2.6
LOWCVE-2015-7094
CFNetwork HTTPProtocol in Apple iOS before 9.2 and OS X before 10.11.2 allows man-in-the-middle attackers to bypass the HSTS protection mechanism via a crafted URL.... Read more
- EPSS Score: %0.34
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
4.3
MEDIUMCVE-2015-7093
Safari in Apple iOS before 9.2 allows remote attackers to spoof a URL in the user interface via a crafted web site.... Read more
- EPSS Score: %0.27
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
7.2
HIGHCVE-2015-7084
The kernel in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-7083.... Read more
- EPSS Score: %0.34
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
7.2
HIGHCVE-2015-7083
The kernel in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-7084.... Read more
- EPSS Score: %0.28
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2015-7082
Multiple unspecified vulnerabilities in Git before 2.5.4, as used in Apple Xcode before 7.2, have unknown impact and attack vectors. NOTE: this CVE is associated only with Xcode use cases.... Read more
- EPSS Score: %0.60
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
5.0
MEDIUMCVE-2015-7081
iBooks in Apple iOS before 9.2 and OS X before 10.11.2 allows remote attackers to read arbitrary files via an iBooks file containing an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.... Read more
- EPSS Score: %0.53
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
2.1
LOWCVE-2015-7080
Siri in Apple iOS before 9.2 allows physically proximate attackers to bypass an intended client-side protection mechanism and obtain sensitive content-notification information by listening to a device in the lock-screen state.... Read more
Affected Products : iphone_os- EPSS Score: %0.07
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-7079
dyld in Apple iOS before 9.2 and tvOS before 9.1 mishandles segment validation, which allows attackers to execute arbitrary code in a privileged context via a crafted app.... Read more
- EPSS Score: %1.10
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
7.2
HIGHCVE-2015-7078
Use-after-free vulnerability in Hypervisor in Apple OS X before 10.11.2 allows local users to gain privileges via vectors involving VM objects.... Read more
- EPSS Score: %0.29
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
7.2
HIGHCVE-2015-7077
The Intel Graphics Driver component in Apple OS X before 10.11.2 allows local users to gain privileges or cause a denial of service (out-of-bounds memory access) via unspecified vectors.... Read more
- EPSS Score: %0.28
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
7.2
HIGHCVE-2015-7076
The Intel Graphics Driver component in Apple OS X before 10.11.2 allows local users to gain privileges or cause a denial of service (NULL pointer dereference) via unspecified vectors.... Read more
- EPSS Score: %0.05
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
6.8
MEDIUMCVE-2015-7075
CoreMedia Playback in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a malformed media file.... Read more
- EPSS Score: %3.40
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
6.8
MEDIUMCVE-2015-7074
CoreMedia Playback in Apple iOS before 9.2, OS X before 10.11.2, and tvOS before 9.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a malformed media file.... Read more
- EPSS Score: %2.83
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
6.8
MEDIUMCVE-2015-7073
Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted SSL handshake.... Read more
- EPSS Score: %3.40
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-7072
dyld in Apple iOS before 9.2, tvOS before 9.1, and watchOS before 2.1 mishandles segment validation, which allows attackers to execute arbitrary code in a privileged context via a crafted app.... Read more
- EPSS Score: %1.01
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2015-7071
The File Bookmark component in Apple OS X before 10.11.2 allows attackers to bypass a sandbox protection mechanism for app scoped bookmarks via a crafted pathname.... Read more
- EPSS Score: %0.39
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-7070
Mobile Replayer in GPUTools Framework in Apple iOS before 9.2 allows attackers to execute arbitrary code in a privileged context via an app that provides a crafted pathname, a different vulnerability than CVE-2015-7069.... Read more
Affected Products : iphone_os- EPSS Score: %0.87
- Published: Dec. 11, 2015
- Modified: Apr. 12, 2025