Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 6.8

    MEDIUM
    CVE-2015-5751

    QuickTime 7 in Apple OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted file, a different vulnerability than CVE-2015-3765, CVE-2015-3779, CVE-2015-378... Read more

    Affected Products : quicktime mac_os_x
    • EPSS Score: %2.51
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 7.5

    HIGH
    CVE-2015-5750

    Data Detectors Engine in Apple OS X before 10.10.5 allows attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted series of Unicode characters.... Read more

    Affected Products : mac_os_x mac_os_x
    • EPSS Score: %0.76
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 4.3

    MEDIUM
    CVE-2015-5749

    The Sandbox_profiles component in Apple iOS before 8.4.1 allows attackers to bypass the third-party app-sandbox protection mechanism and read arbitrary managed preferences via a crafted app.... Read more

    Affected Products : iphone_os
    • EPSS Score: %0.30
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 2.1

    LOW
    CVE-2015-5748

    The kernel in Apple OS X before 10.10.5 does not properly mount HFS volumes, which allows local users to cause a denial of service via a crafted volume.... Read more

    Affected Products : mac_os_x iphone_os safari
    • EPSS Score: %0.08
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 4.9

    MEDIUM
    CVE-2015-5747

    The fasttrap driver in the kernel in Apple OS X before 10.10.5 allows local users to cause a denial of service (resource consumption) via unspecified vectors.... Read more

    Affected Products : mac_os_x mac_os_x
    • EPSS Score: %0.04
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 5.0

    MEDIUM
    CVE-2015-5746

    AppleFileConduit in Apple iOS before 8.4.1 allows attackers to bypass intended restrictions on filesystem access via an afc command that leverages symlink mishandling.... Read more

    Affected Products : iphone_os
    • EPSS Score: %0.23
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 4.3

    MEDIUM
    CVE-2015-3807

    libxml2 in Apple iOS before 8.4.1 and OS X before 10.10.5 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (memory corruption) via a crafted XML document.... Read more

    Affected Products : mac_os_x iphone_os tvos
    • EPSS Score: %2.36
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 7.2

    HIGH
    CVE-2015-3806

    Apple iOS before 8.4.1 and OS X before 10.10.5 allow local users to bypass a code-signing protection mechanism by appending code to a crafted executable file.... Read more

    Affected Products : mac_os_x iphone_os
    • EPSS Score: %0.05
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 7.2

    HIGH
    CVE-2015-3805

    Apple iOS before 8.4.1 and OS X before 10.10.5 allow local users to bypass a code-signing protection mechanism via a crafted Mach-O file, a different vulnerability than CVE-2015-3802.... Read more

    Affected Products : mac_os_x iphone_os
    • EPSS Score: %0.06
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 7.5

    HIGH
    CVE-2015-3804

    FontParser in Apple iOS before 8.4.1 and OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted font file, a different vulnerability than CVE-2015-5756 and... Read more

    Affected Products : mac_os_x iphone_os
    • EPSS Score: %1.99
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 7.2

    HIGH
    CVE-2015-3803

    Apple iOS before 8.4.1 and OS X before 10.10.5 allow local users to bypass a code-signing protection mechanism via a crafted multi-architecture executable file.... Read more

    Affected Products : mac_os_x iphone_os
    • EPSS Score: %0.06
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 7.2

    HIGH
    CVE-2015-3802

    Apple iOS before 8.4.1 and OS X before 10.10.5 allow local users to bypass a code-signing protection mechanism via a crafted Mach-O file, a different vulnerability than CVE-2015-3805.... Read more

    Affected Products : mac_os_x iphone_os
    • EPSS Score: %0.06
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 7.2

    HIGH
    CVE-2015-3800

    The DiskImages component in Apple iOS before 8.4.1 and OS X before 10.10.5 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via a malformed DMG image.... Read more

    Affected Products : mac_os_x iphone_os
    • EPSS Score: %0.07
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 9.3

    HIGH
    CVE-2015-3799

    The Apple ID OD plug-in in Apple OS X before 10.10.5 allows attackers to change arbitrary user passwords via a crafted app.... Read more

    Affected Products : mac_os_x mac_os_x
    • EPSS Score: %0.50
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 7.5

    HIGH
    CVE-2015-3798

    The TRE library in Libc in Apple iOS before 8.4.1 and OS X before 10.10.5 allows context-dependent attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted regular expression, a different vul... Read more

    Affected Products : mac_os_x iphone_os
    • EPSS Score: %22.39
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 7.5

    HIGH
    CVE-2015-3797

    The TRE library in Libc in Apple iOS before 8.4.1 and OS X before 10.10.5 allows context-dependent attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted regular expression, a different vul... Read more

    Affected Products : mac_os_x iphone_os
    • EPSS Score: %0.88
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 7.5

    HIGH
    CVE-2015-3796

    The TRE library in Libc in Apple iOS before 8.4.1 and OS X before 10.10.5 allows context-dependent attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted regular expression, a different vul... Read more

    Affected Products : mac_os_x iphone_os
    • EPSS Score: %16.07
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 9.3

    HIGH
    CVE-2015-3795

    libxpc in Apple iOS before 8.4.1 and OS X before 10.10.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app that sends a malformed XPC message.... Read more

    Affected Products : mac_os_x iphone_os
    • EPSS Score: %1.58
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 6.8

    MEDIUM
    CVE-2015-3794

    The Speech UI in Apple OS X before 10.10.5, when speech alerts are enabled, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted Unicode string.... Read more

    Affected Products : mac_os_x mac_os_x
    • EPSS Score: %1.90
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
  • 4.3

    MEDIUM
    CVE-2015-3793

    CFPreferences in Apple iOS before 8.4.1 allows attackers to bypass the third-party app-sandbox protection mechanism and read arbitrary managed preferences via a crafted app.... Read more

    Affected Products : iphone_os
    • EPSS Score: %0.30
    • Published: Aug. 17, 2015
    • Modified: Apr. 12, 2025
Showing 20 of 291368 Results