Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
iOS Number Of NVD 3541 CRITICAL 137 HIGH 1622 MEDIUM 1441 LOW 245
URL https://www.apple.com/jp/ios/
Explanation This is the operating system installed on the iPhone provided by Apple.
Tag
  • Mobile
  • Apple

Add Information URL
No Type Name URL
1 https://support.apple.com/en-us/HT201222
2 https://developer.apple.com/documentation/ios-ipados-release-notes
3 https://en.wikipedia.org/wiki/IOS_version_history

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
3371 iOS17 17.6.1 Aug. 27, 2024 Sept. 18, 2023 8 70 139 21
3372 iOS16 16.4.1 April 7, 2023 Sept. 12, 2022 24 200 264 55
3373 iOS 15 15.7 Sept. 12, 2022 Sept. 20, 2021 38 351 349 71
3374 iOS 14 14.8 Sept. 13, 2021 July 9, 2020 52 522 456 78
3375 iOS 13 13.7 Sept. 1, 2020 Sept. 19, 2019 64 702 540 95
3376 iOS 12 12.5.1 Jan. 11, 2021 Sept. 17, 2018 83 859 620 107
3377 iOS 11 11.4.1 July 9, 2018 Sept. 19, 2017 93 1024 689 115
3378 iOS 10 10.3.4 July 22, 2019 Sept. 13, 2016 119 1245 789 132
3379 iOS 9 9.3.6 July 22, 2019 Sept. 16, 2015 133 1371 916 148
3380 iOS 8 8.4.1 Aug. 13, 2015 Sept. 17, 2014 131 1426 1129 180
3381 iOS 7 7.0.6 Feb. 21, 2014 Sept. 18, 2013 131 1447 1192 203
3382 iOS 6 6.0.2 Dec. 18, 2012 Sept. 19, 2012 131 1473 1255 215
3383 iOS 5 5.0.1 Nov. 10, 2011 Oct. 12, 2011 131 1542 1329 227
3384 iOS 4 4.0.2 Aug. 11, 2010 June 21, 2010 132 1569 1384 234
3385 iPhone OS 3 3.0.1 July 31, 2009 June 17, 2009 132 1576 1399 237
3386 iPhone OS 2 1.1.5 July 15, 2008 July 11, 2008 133 1588 1394 235
3387 iPhone OS 1 1.0.2 Aug. 21, 2007 June 29, 2007 132 1593 1395 236
3388 iOS7.1 7.1.2 131 1440 1168 197
3389 iOS6.1 6.1.6 131 1464 1236 211
3390 iOS6.0 6.0.2 131 1473 1254 215
3391 iOS5.1 5.1.1 131 1483 1307 225
3392 iOS4.3 4.3.5 131 1561 1357 233
3393 iOS4.2 4.2.9 131 1563 1362 233
3394 iOS4.1 4.1 132 1566 1374 233
3395 iOS3.2 3.2.2 132 1570 1389 235
3396 iOS3.1 3.1.3 132 1573 1397 235
3397 iOS2.2 2.2.1 132 1584 1393 231
3398 iOS2.1 2.1.1 132 1588 1394 235
3399 iOS2.0 2.0.2 133 1588 1393 235
3400 iOS16.2 16.2 18 165 231 54
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
3371 -
5.0
MEDIUM Google Chrome before 15.0.874.102 does not properly handle javascript: URLs, which allows remote attackers to bypass intended access restrictions and read cookies via unspecified vectors. CWE-565
 Reliance on Cookies without Validation and Integrity Checking
CVE-2011-3887 cpe:2.3:o:apple:iphone_os:*:* 5.1 2024-11-21 10:31
2011-10-26
Show GitHub Exploit DB Packet Storm
3372 -
7.5
HIGH Use-after-free vulnerability in Google Chrome before 15.0.874.102 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to stale Cascading… CWE-416
 Use After Free
CVE-2011-3885 cpe:2.3:o:apple:iphone_os:*:* 5.1 2024-11-21 10:31
2011-10-26
Show GitHub Exploit DB Packet Storm
3373 -
4.3
MEDIUM WebKit, as used in Google Chrome before 15.0.874.102 and Android before 4.4, allows remote attackers to bypass the Same Origin Policy and conduct Universal XSS (UXSS) attacks via vectors related to (… CWE-79
Cross-site Scripting
CVE-2011-3881 cpe:2.3:o:apple:iphone_os:*:* 5.1 2024-11-21 10:31
2011-10-26
Show GitHub Exploit DB Packet Storm
3374 -
4.3
MEDIUM Google Chrome before 15.0.874.102 does not properly handle history data, which allows user-assisted remote attackers to spoof the URL bar via unspecified vectors. CWE-20
 Improper Input Validation 
CVE-2011-2845 cpe:2.3:o:apple:iphone_os:*:* 6.0 2024-11-21 10:29
2011-10-26
Show GitHub Exploit DB Packet Storm
3375 -
4.3
MEDIUM The WiFi component in Apple iOS before 5 stores WiFi credentials in an unspecified file, which makes it easier for remote attackers to obtain sensitive information via a crafted application. CWE-255
Credentials Management
CVE-2011-3434 cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:*
cpe:2.3:…
2024-11-21 10:30
2011-10-14
Show GitHub Exploit DB Packet Storm
3376 -
5.0
MEDIUM The UIKit Alerts component in Apple iOS before 5 allows remote attackers to cause a denial of service (device hang) via a long tel: URL that triggers a large size for the acceptance dialog. CWE-399
 Resource Management Errors
CVE-2011-3432 cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:*
cpe:2.3:…
2024-11-21 10:30
2011-10-14
Show GitHub Exploit DB Packet Storm
3377 -
2.1
LOW The Home screen component in Apple iOS before 5 does not properly support a certain application-switching gesture, which might allow physically proximate attackers to obtain sensitive state informati… CWE-200
Information Exposure
CVE-2011-3431 cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:*
cpe:2.3:…
2024-11-21 10:30
2011-10-14
Show GitHub Exploit DB Packet Storm
3378 -
9.3
HIGH The Settings component in Apple iOS before 5, when a configuration profile is used for a locale other than English, does not properly implement localization, which makes it easier for attackers to ha… NVD-CWE-Other
CVE-2011-3430 cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:*
cpe:2.3:…
2024-11-21 10:30
2011-10-14
Show GitHub Exploit DB Packet Storm
3379 -
2.1
LOW The Settings component in Apple iOS before 5 stores a cleartext parental-restrictions passcode in an unspecified file, which might allow physically proximate attackers to obtain sensitive information… CWE-255
Credentials Management
CVE-2011-3429 cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:*
cpe:2.3:…
2024-11-21 10:30
2011-10-14
Show GitHub Exploit DB Packet Storm
3380 -
2.6
LOW The Data Security component in Apple iOS before 5 and Apple TV before 4.4 does not properly restrict use of the MD5 hash algorithm within X.509 certificates, which makes it easier for man-in-the-midd… CWE-200
Information Exposure
CVE-2011-3427 cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:*
cpe:2.3:…
2024-11-21 10:30
2011-10-14
Show GitHub Exploit DB Packet Storm