Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
iOS Number Of NVD 3541 CRITICAL 137 HIGH 1622 MEDIUM 1441 LOW 245
URL https://www.apple.com/jp/ios/
Explanation This is the operating system installed on the iPhone provided by Apple.
Tag
  • Mobile
  • Apple

Add Information URL
No Type Name URL
1 https://support.apple.com/en-us/HT201222
2 https://developer.apple.com/documentation/ios-ipados-release-notes
3 https://en.wikipedia.org/wiki/IOS_version_history

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
2561 iOS17 17.6.1 Aug. 27, 2024 Sept. 18, 2023 8 70 139 21
2562 iOS16 16.4.1 April 7, 2023 Sept. 12, 2022 24 200 264 55
2563 iOS 15 15.7 Sept. 12, 2022 Sept. 20, 2021 38 351 349 71
2564 iOS 14 14.8 Sept. 13, 2021 July 9, 2020 52 522 456 78
2565 iOS 13 13.7 Sept. 1, 2020 Sept. 19, 2019 64 702 540 95
2566 iOS 12 12.5.1 Jan. 11, 2021 Sept. 17, 2018 83 859 620 107
2567 iOS 11 11.4.1 July 9, 2018 Sept. 19, 2017 93 1024 689 115
2568 iOS 10 10.3.4 July 22, 2019 Sept. 13, 2016 119 1245 789 132
2569 iOS 9 9.3.6 July 22, 2019 Sept. 16, 2015 133 1371 916 148
2570 iOS 8 8.4.1 Aug. 13, 2015 Sept. 17, 2014 131 1426 1129 180
2571 iOS 7 7.0.6 Feb. 21, 2014 Sept. 18, 2013 131 1447 1192 203
2572 iOS 6 6.0.2 Dec. 18, 2012 Sept. 19, 2012 131 1473 1255 215
2573 iOS 5 5.0.1 Nov. 10, 2011 Oct. 12, 2011 131 1542 1329 227
2574 iOS 4 4.0.2 Aug. 11, 2010 June 21, 2010 132 1569 1384 234
2575 iPhone OS 3 3.0.1 July 31, 2009 June 17, 2009 132 1576 1399 237
2576 iPhone OS 2 1.1.5 July 15, 2008 July 11, 2008 133 1588 1394 235
2577 iPhone OS 1 1.0.2 Aug. 21, 2007 June 29, 2007 132 1593 1395 236
2578 iOS7.1 7.1.2 131 1440 1168 197
2579 iOS6.1 6.1.6 131 1464 1236 211
2580 iOS6.0 6.0.2 131 1473 1254 215
2581 iOS5.1 5.1.1 131 1483 1307 225
2582 iOS4.3 4.3.5 131 1561 1357 233
2583 iOS4.2 4.2.9 131 1563 1362 233
2584 iOS4.1 4.1 132 1566 1374 233
2585 iOS3.2 3.2.2 132 1570 1389 235
2586 iOS3.1 3.1.3 132 1573 1397 235
2587 iOS2.2 2.2.1 132 1584 1393 231
2588 iOS2.1 2.1.1 132 1588 1394 235
2589 iOS2.0 2.0.2 133 1588 1393 235
2590 iOS16.2 16.2 18 165 231 54
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
2561 6.5
4.3
MEDIUM
Network
The History implementation in WebKit in Apple iOS before 9.3, Safari before 9.1, and tvOS before 9.2 allows remote attackers to cause a denial of service (resource consumption and application crash) … CWE-400
 Uncontrolled Resource Consumption
CVE-2016-1784 cpe:2.3:o:apple:iphone_os:*:* 9.3 2024-11-21 11:47
2016-03-24
Show GitHub Exploit DB Packet Storm
2562 8.8
9.3
HIGH
Network
WebKit in Apple iOS before 9.3, Safari before 9.1, and tvOS before 9.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1783 cpe:2.3:o:apple:iphone_os:*:* 9.3 2024-11-21 11:47
2016-03-24
Show GitHub Exploit DB Packet Storm
2563 6.5
4.3
MEDIUM
Network
WebKit in Apple iOS before 9.3 and Safari before 9.1 does not properly restrict redirects that specify a TCP port number, which allows remote attackers to bypass intended port restrictions via a craf… CWE-284
Improper Access Control
CVE-2016-1782 cpe:2.3:o:apple:iphone_os:*:* 9.2.1 2024-11-21 11:47
2016-03-24
Show GitHub Exploit DB Packet Storm
2564 4.3
4.3
MEDIUM
Network
WebKit in Apple iOS before 9.3 and Safari before 9.1 mishandles attachment URLs, which makes it easier for remote web servers to track users via unspecified vectors. CWE-19
 Data Processing Errors
CVE-2016-1781 cpe:2.3:o:apple:iphone_os:*:* 9.2.1 2024-11-21 11:47
2016-03-24
Show GitHub Exploit DB Packet Storm
2565 4.3
4.3
MEDIUM
Network
WebKit in Apple iOS before 9.3 does not prevent hidden web views from reading orientation and motion data, which allows remote attackers to obtain sensitive information about a device's physical envi… CWE-200
Information Exposure
CVE-2016-1780 cpe:2.3:o:apple:iphone_os:*:* 9.2.1 2024-11-21 11:47
2016-03-24
Show GitHub Exploit DB Packet Storm
2566 6.5
4.3
MEDIUM
Network
WebKit in Apple iOS before 9.3 and Safari before 9.1 allows remote attackers to bypass the Same Origin Policy and obtain physical-location data via a crafted geolocation request. CWE-200
Information Exposure
CVE-2016-1779 cpe:2.3:o:apple:iphone_os:*:* 9.2.1 2024-11-21 11:47
2016-03-24
Show GitHub Exploit DB Packet Storm
2567 8.8
9.3
HIGH
Network
WebKit in Apple iOS before 9.3 and Safari before 9.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site. CWE-399
 Resource Management Errors
CVE-2016-1778 cpe:2.3:o:apple:iphone_os:*:* 9.2.1 2024-11-21 11:47
2016-03-24
Show GitHub Exploit DB Packet Storm
2568 7.8
9.3
HIGH
Local
TrueTypeScaler in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption)… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1775 cpe:2.3:o:apple:iphone_os:*:* 9.3 2024-11-21 11:47
2016-03-24
Show GitHub Exploit DB Packet Storm
2569 7.5
5.0
HIGH
Network
The Profiles component in Apple iOS before 9.3 does not properly validate certificates, which allows attackers to spoof an MDM profile trust relationship via unspecified vectors. NVD-CWE-noinfo
CVE-2016-1766 cpe:2.3:o:apple:iphone_os:*:* 9.2.1 2024-11-21 11:47
2016-03-24
Show GitHub Exploit DB Packet Storm
2570 3.5
3.5
LOW
Network
Messages in Apple iOS before 9.3 does not ensure that an auto-fill action applies to the intended message thread, which allows remote authenticated users to obtain sensitive information by providing … CWE-20
 Improper Input Validation 
CVE-2016-1763 cpe:2.3:o:apple:iphone_os:*:* 9.2.1 2024-11-21 11:47
2016-03-24
Show GitHub Exploit DB Packet Storm