|
241
|
7.1
-
|
HIGH
Local
|
This issue was addressed by adding an additional prompt for user consent. This issue is fixed in macOS Ventura 13.6.8, macOS Monterey 12.7.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, macOS Sonoma 14.6…
|
NVD-CWE-noinfo
|
CVE-2024-40787
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
17.6
|
2024-11-21 18:31
2024-07-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
242
|
7.5
-
|
HIGH
Network
|
This issue was addressed through improved state management. This issue is fixed in iOS 17.6 and iPadOS 17.6, iOS 16.7.9 and iPadOS 16.7.9, macOS Ventura 13.6.8. An attacker may be able to view sensit…
|
NVD-CWE-noinfo
|
CVE-2024-40786
|
cpe:2.3:o:apple:iphone_os:*:*
|
17.0
|
|
|
17.6 16.7.9
|
2024-11-21 18:31
2024-07-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
243
|
6.1
-
|
MEDIUM
Network
|
This issue was addressed with improved checks. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, Safari 17.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, visionOS 1.3, macOS Sonoma 14.6. Pr…
|
CWE-79
Cross-site Scripting
|
CVE-2024-40785
|
cpe:2.3:o:apple:iphone_os:*:*
|
17.0
|
|
|
17.6 16.7.9
|
2024-11-21 18:31
2024-07-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
244
|
5.5
-
|
MEDIUM
Local
|
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, Safari 17.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, visionOS 1.3, m…
|
CWE-125
Out-of-bounds Read
|
CVE-2024-40779
|
cpe:2.3:o:apple:iphone_os:*:*
|
17.0
|
|
|
17.6 16.7.9
|
2024-11-21 18:31
2024-07-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
245
|
3.3
-
|
LOW
Local
|
An authentication issue was addressed with improved state management. This issue is fixed in macOS Sonoma 14.6, iOS 17.6 and iPadOS 17.6, iOS 16.7.9 and iPadOS 16.7.9. Photos in the Hidden Photos Alb…
|
NVD-CWE-noinfo
|
CVE-2024-40778
|
cpe:2.3:o:apple:iphone_os:*:*
|
17.0
|
|
|
17.6 16.7.9
|
2024-11-21 18:31
2024-07-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246
|
4.3
-
|
MEDIUM
Network
|
A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, Safari 17.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, visionOS 1.3…
|
CWE-416
Use After Free
|
CVE-2024-40776
|
cpe:2.3:o:apple:iphone_os:*:*
|
17.0
|
|
|
17.6 16.7.9
|
2024-11-21 18:31
2024-07-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247
|
7.1
-
|
HIGH
Local
|
A downgrade issue was addressed with additional code-signing restrictions. This issue is fixed in macOS Ventura 13.6.8, macOS Monterey 12.7.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, macOS…
|
NVD-CWE-noinfo
|
CVE-2024-40774
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
17.6
|
2024-11-21 18:31
2024-07-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248
|
5.5
-
|
MEDIUM
Local
|
This issue was addressed with a new entitlement. This issue is fixed in macOS Sonoma 14.5, watchOS 10.5, visionOS 1.2, tvOS 17.5, iOS 17.5 and iPadOS 17.5. An app may be able to access user-sensitive…
|
NVD-CWE-noinfo
|
CVE-2024-27884
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
17.5
|
2024-11-21 18:05
2024-07-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249
|
5.5
-
|
MEDIUM
Local
|
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, macOS Ventura 13.6.8, macOS Monterey 12.7.6, iOS 17.6 and iPadOS 17.6, …
|
CWE-787
Out-of-bounds Write
|
CVE-2024-27873
|
cpe:2.3:o:apple:iphone_os:*:*
|
17.0
|
|
|
17.6 16.7.9
|
2024-11-21 18:05
2024-07-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250
|
5.5
-
|
MEDIUM
Local
|
A path handling issue was addressed with improved validation. This issue is fixed in macOS Sonoma 14.6, iOS 17.6 and iPadOS 17.6. An app may be able to access protected user data.
|
CWE-22
Path Traversal
|
CVE-2024-27871
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
17.6
|
2024-11-21 18:05
2024-07-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|