Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
iOS Number Of NVD 3610 CRITICAL 137 HIGH 1663 MEDIUM 1468 LOW 246
URL https://www.apple.com/jp/ios/
Explanation This is the operating system installed on the iPhone provided by Apple.
Tag
  • Mobile
  • Apple

Add Information URL
No Type Name URL
1 https://support.apple.com/en-us/HT201222
2 https://developer.apple.com/documentation/ios-ipados-release-notes
3 https://en.wikipedia.org/wiki/IOS_version_history

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
2551 iOS17 17.6.1 Aug. 27, 2024 Sept. 18, 2023 8 111 166 22
2552 iOS16 16.4.1 April 7, 2023 Sept. 12, 2022 24 241 291 56
2553 iOS 15 15.7 Sept. 12, 2022 Sept. 20, 2021 38 392 376 72
2554 iOS 14 14.8 Sept. 13, 2021 July 9, 2020 52 563 483 79
2555 iOS 13 13.7 Sept. 1, 2020 Sept. 19, 2019 64 743 567 96
2556 iOS 12 12.5.1 Jan. 11, 2021 Sept. 17, 2018 83 900 647 108
2557 iOS 11 11.4.1 July 9, 2018 Sept. 19, 2017 93 1065 716 116
2558 iOS 10 10.3.4 July 22, 2019 Sept. 13, 2016 119 1286 816 133
2559 iOS 9 9.3.6 July 22, 2019 Sept. 16, 2015 133 1412 943 149
2560 iOS 8 8.4.1 Aug. 13, 2015 Sept. 17, 2014 131 1467 1156 181
2561 iOS 7 7.0.6 Feb. 21, 2014 Sept. 18, 2013 131 1488 1219 204
2562 iOS 6 6.0.2 Dec. 18, 2012 Sept. 19, 2012 131 1514 1282 216
2563 iOS 5 5.0.1 Nov. 10, 2011 Oct. 12, 2011 131 1583 1356 228
2564 iOS 4 4.0.2 Aug. 11, 2010 June 21, 2010 132 1610 1411 235
2565 iPhone OS 3 3.0.1 July 31, 2009 June 17, 2009 132 1617 1426 238
2566 iPhone OS 2 1.1.5 July 15, 2008 July 11, 2008 133 1629 1421 236
2567 iPhone OS 1 1.0.2 Aug. 21, 2007 June 29, 2007 132 1634 1422 237
2568 iOS7.1 7.1.2 131 1481 1195 198
2569 iOS6.1 6.1.6 131 1505 1263 212
2570 iOS6.0 6.0.2 131 1514 1281 216
2571 iOS5.1 5.1.1 131 1524 1334 226
2572 iOS4.3 4.3.5 131 1602 1384 234
2573 iOS4.2 4.2.9 131 1604 1389 234
2574 iOS4.1 4.1 132 1607 1401 234
2575 iOS3.2 3.2.2 132 1611 1416 236
2576 iOS3.1 3.1.3 132 1614 1424 236
2577 iOS2.2 2.2.1 132 1625 1420 232
2578 iOS2.1 2.1.1 132 1629 1421 236
2579 iOS2.0 2.0.2 133 1629 1420 236
2580 iOS16.2 16.2 18 206 258 55
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
2551 3.3
4.3
LOW
Local
The Sandbox Profiles component in Apple iOS before 10 does not properly restrict access to directory metadata for SMS draft directories, which allows attackers to discover text-message recipients via… CWE-200
Information Exposure
CVE-2016-4620 cpe:2.3:o:apple:iphone_os:*:* 9.3.5 2024-11-21 11:52
2016-09-19
Show GitHub Exploit DB Packet Storm
2552 8.8
6.8
HIGH
Network
WebKit in Apple iOS before 9.3.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site. CWE-787
 Out-of-bounds Write
CVE-2016-4657 cpe:2.3:o:apple:iphone_os:*:* 9.3.5 2026-04-22 01:22
2016-08-26
Show GitHub Exploit DB Packet Storm
2553 7.8
9.3
HIGH
Local
The kernel in Apple iOS before 9.3.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. CWE-787
 Out-of-bounds Write
CVE-2016-4656 cpe:2.3:o:apple:iphone_os:*:* 9.3.5 2026-04-22 01:22
2016-08-26
Show GitHub Exploit DB Packet Storm
2554 5.5
7.1
MEDIUM
Local
The kernel in Apple iOS before 9.3.5 allows attackers to obtain sensitive information from memory via a crafted app. NVD-CWE-noinfo
CVE-2016-4655 cpe:2.3:o:apple:iphone_os:10.0:*
cpe:2.3:o:apple:iphone_os:*:*
9.3.5 2026-04-22 01:23
2016-08-26
Show GitHub Exploit DB Packet Storm
2555 7.8
9.3
HIGH
Local
IOMobileFrameBuffer in Apple iOS before 9.3.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. CWE-264
CWE-119
Permissions, Privileges, and Access Controls
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4654 cpe:2.3:o:apple:iphone_os:9.3.3:* 2024-11-21 11:52
2016-08-19
Show GitHub Exploit DB Packet Storm
2556 8.8
6.8
HIGH
Network
Use-after-free vulnerability in libxml2 through 2.9.4, as used in Google Chrome before 52.0.2743.82, allows remote attackers to cause a denial of service or possibly have unspecified other impact via… CWE-416
 Use After Free
CVE-2016-5131 cpe:2.3:o:apple:iphone_os:*:* 10.0 2024-11-21 11:53
2016-07-24
Show GitHub Exploit DB Packet Storm
2557 7.8
7.2
HIGH
Local
The kernel in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows local users to gain privileges or cause a denial of service (memory corruption) via unspe… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4653 cpe:2.3:o:apple:iphone_os:*:* 9.3.3 2024-11-21 11:52
2016-07-22
Show GitHub Exploit DB Packet Storm
2558 6.1
4.3
MEDIUM
Network
Cross-site scripting (XSS) vulnerability in the WebKit JavaScript bindings in Apple iOS before 9.3.3 and Safari before 9.1.2 allows remote attackers to inject arbitrary web script or HTML via a craft… CWE-79
Cross-site Scripting
CVE-2016-4651 cpe:2.3:o:apple:iphone_os:*:* 9.3.2 2024-11-21 11:52
2016-07-22
Show GitHub Exploit DB Packet Storm
2559 8.8
6.8
HIGH
Network
CoreGraphics in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupt… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4637 cpe:2.3:o:apple:iphone_os:*:* 9.3.3 2024-11-21 11:52
2016-07-22
Show GitHub Exploit DB Packet Storm
2560 5.3
3.5
MEDIUM
Network
FaceTime in Apple iOS before 9.3.3 and OS X before 10.11.6 allows man-in-the-middle attackers to spoof relayed-call termination, and obtain sensitive audio information in opportunistic circumstances,… CWE-200
Information Exposure
CVE-2016-4635 cpe:2.3:o:apple:iphone_os:*:* 9.3.2 2024-11-21 11:52
2016-07-22
Show GitHub Exploit DB Packet Storm