Show filters
156 Total Results
Displaying 81-90 of 156
Sort by:
Attacker Value
Unknown
CVE-2014-4386
Disclosure Date: September 18, 2014 (last updated October 05, 2023)
Race condition in the App Installation feature in Apple iOS before 8 allows local users to gain privileges and install unverified apps by leveraging /tmp write access.
0
Attacker Value
Unknown
CVE-2014-4409
Disclosure Date: September 18, 2014 (last updated October 05, 2023)
WebKit in Apple iOS before 8 makes it easier for remote attackers to track users during private browsing via a crafted web site that reads HTML5 application-cache data that had been stored during normal browsing.
0
Attacker Value
Unknown
CVE-2014-4414
Disclosure Date: September 18, 2014 (last updated October 05, 2023)
WebKit, as used in Apple iOS before 8 and Apple TV before 7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-09-17-1 and APPLE-SA-2014-09-17-2.
0
Attacker Value
Unknown
CVE-2014-4388
Disclosure Date: September 18, 2014 (last updated November 25, 2024)
IOKit in Apple iOS before 8 and Apple TV before 7 does not properly validate IODataQueue object metadata, which allows attackers to execute arbitrary code in a privileged context via an application that provides crafted values in unspecified metadata fields, a different vulnerability than CVE-2014-4418.
0
Attacker Value
Unknown
CVE-2014-4413
Disclosure Date: September 18, 2014 (last updated October 05, 2023)
WebKit, as used in Apple iOS before 8 and Apple TV before 7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-09-17-1 and APPLE-SA-2014-09-17-2.
0
Attacker Value
Unknown
CVE-2014-4366
Disclosure Date: September 18, 2014 (last updated October 05, 2023)
Mail in Apple iOS before 8 does not prevent sending a LOGIN command to a LOGINDISABLED IMAP server, which allows remote attackers to obtain sensitive cleartext information by sniffing the network.
0
Attacker Value
Unknown
CVE-2014-4383
Disclosure Date: September 18, 2014 (last updated October 05, 2023)
The Assets subsystem in Apple iOS before 8 and Apple TV before 7 allows man-in-the-middle attackers to spoof a device's update status via a crafted Last-Modified HTTP response header.
0
Attacker Value
Unknown
CVE-2014-1359
Disclosure Date: July 01, 2014 (last updated October 05, 2023)
Integer underflow in launchd in Apple iOS before 7.1.2, Apple OS X before 10.9.4, and Apple TV before 6.1.2 allows attackers to execute arbitrary code via a crafted application.
0
Attacker Value
Unknown
CVE-2014-1363
Disclosure Date: July 01, 2014 (last updated October 05, 2023)
WebKit, as used in Apple iOS before 7.1.2, Apple Safari before 6.1.5 and 7.x before 7.0.5, and Apple TV before 6.1.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-06-30-1, APPLE-SA-2014-06-30-3, and APPLE-SA-2014-06-30-4.
0
Attacker Value
Unknown
CVE-2014-1353
Disclosure Date: July 01, 2014 (last updated October 05, 2023)
Lock Screen in Apple iOS before 7.1.2 does not properly manage the telephony state in Airplane Mode, which allows physically proximate attackers to bypass the lock protection mechanism, and access a certain foreground application, via unspecified vectors.
0