|
1481
|
7.8
6.8
|
HIGH
Local
|
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8, iTunes 12.10.8 for Windo…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-9936
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.6
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1482
|
3.3
4.3
|
LOW
Local
|
An authorization issue was addressed with improved state management. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8. A malicious application may be able to read sensitive…
|
NVD-CWE-noinfo
|
CVE-2020-9933
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.6
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1483
|
7.5
5.0
|
HIGH
Network
|
A denial of service issue was addressed with improved input validation. This issue is fixed in iOS 13.6 and iPadOS 13.6. A remote attacker may cause an unexpected application termination.
|
CWE-20
Improper Input Validation
|
CVE-2020-9931
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.6
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1484
|
6.1
4.3
|
MEDIUM
Network
|
A logic issue was addressed with improved state management. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.1.2, iTunes 12.10.8 for Windows, iCloud for Windows …
|
CWE-79
Cross-site Scripting
|
CVE-2020-9925
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.6
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1485
|
7.8
9.3
|
HIGH
Local
|
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, watchOS 6.2.8. A malicious application may be able to execute arbitrary code wi…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-9923
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.6
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1486
|
7.5
5.0
|
HIGH
Network
|
This issue was addressed with improved checks. This issue is fixed in iOS 13.6 and iPadOS 13.6. A remote attacker may be able to cause a denial of service.
|
NVD-CWE-noinfo
|
CVE-2020-9917
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.6
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1487
|
5.3
5.0
|
MEDIUM
Network
|
A URL Unicode encoding issue was addressed with improved state management. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.1.2, iTunes 12.10.8 for Windows, iClo…
|
NVD-CWE-noinfo
|
CVE-2020-9916
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.6
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1488
|
6.5
4.3
|
MEDIUM
Network
|
An access issue existed in Content Security Policy. This issue was addressed with improved access restrictions. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.…
|
NVD-CWE-noinfo
|
CVE-2020-9915
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.6
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1489
|
7.5
5.0
|
HIGH
Network
|
An input validation issue existed in Bluetooth. This issue was addressed with improved input validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8. An attacker in a privileged netw…
|
CWE-20
Improper Input Validation
|
CVE-2020-9914
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.6
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1490
|
7.5
5.0
|
HIGH
Network
|
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.6 and iPadOS 13.6, Safari 13.1.2. An issue in Safari Reader mode may allow a remote attacker to bypass the Same O…
|
NVD-CWE-noinfo
|
CVE-2020-9911
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.6
|
2024-11-21 14:41
2020-10-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|