Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
iOS Number Of NVD 3541 CRITICAL 137 HIGH 1622 MEDIUM 1441 LOW 245
URL https://www.apple.com/jp/ios/
Explanation This is the operating system installed on the iPhone provided by Apple.
Tag
  • Mobile
  • Apple

Add Information URL
No Type Name URL
1 https://support.apple.com/en-us/HT201222
2 https://developer.apple.com/documentation/ios-ipados-release-notes
3 https://en.wikipedia.org/wiki/IOS_version_history

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
3041 iOS17 17.6.1 Aug. 27, 2024 Sept. 18, 2023 8 70 139 21
3042 iOS16 16.4.1 April 7, 2023 Sept. 12, 2022 24 200 264 55
3043 iOS 15 15.7 Sept. 12, 2022 Sept. 20, 2021 38 351 349 71
3044 iOS 14 14.8 Sept. 13, 2021 July 9, 2020 52 522 456 78
3045 iOS 13 13.7 Sept. 1, 2020 Sept. 19, 2019 64 702 540 95
3046 iOS 12 12.5.1 Jan. 11, 2021 Sept. 17, 2018 83 859 620 107
3047 iOS 11 11.4.1 July 9, 2018 Sept. 19, 2017 93 1024 689 115
3048 iOS 10 10.3.4 July 22, 2019 Sept. 13, 2016 119 1245 789 132
3049 iOS 9 9.3.6 July 22, 2019 Sept. 16, 2015 133 1371 916 148
3050 iOS 8 8.4.1 Aug. 13, 2015 Sept. 17, 2014 131 1426 1129 180
3051 iOS 7 7.0.6 Feb. 21, 2014 Sept. 18, 2013 131 1447 1192 203
3052 iOS 6 6.0.2 Dec. 18, 2012 Sept. 19, 2012 131 1473 1255 215
3053 iOS 5 5.0.1 Nov. 10, 2011 Oct. 12, 2011 131 1542 1329 227
3054 iOS 4 4.0.2 Aug. 11, 2010 June 21, 2010 132 1569 1384 234
3055 iPhone OS 3 3.0.1 July 31, 2009 June 17, 2009 132 1576 1399 237
3056 iPhone OS 2 1.1.5 July 15, 2008 July 11, 2008 133 1588 1394 235
3057 iPhone OS 1 1.0.2 Aug. 21, 2007 June 29, 2007 132 1593 1395 236
3058 iOS7.1 7.1.2 131 1440 1168 197
3059 iOS6.1 6.1.6 131 1464 1236 211
3060 iOS6.0 6.0.2 131 1473 1254 215
3061 iOS5.1 5.1.1 131 1483 1307 225
3062 iOS4.3 4.3.5 131 1561 1357 233
3063 iOS4.2 4.2.9 131 1563 1362 233
3064 iOS4.1 4.1 132 1566 1374 233
3065 iOS3.2 3.2.2 132 1570 1389 235
3066 iOS3.1 3.1.3 132 1573 1397 235
3067 iOS2.2 2.2.1 132 1584 1393 231
3068 iOS2.1 2.1.1 132 1588 1394 235
3069 iOS2.0 2.0.2 133 1588 1393 235
3070 iOS16.2 16.2 18 165 231 54
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
3041 7.8
7.2
HIGH
Local
Double free vulnerability in Apple iOS before 8 and Apple TV before 7 allows local users to gain privileges or cause a denial of service (device crash) via vectors related to Mach ports. NVD-CWE-Other
CVE-2014-4375 cpe:2.3:o:apple:iphone_os:7.1:*
cpe:2.3:o:apple:iphone_os:7.1.1:*
cpe:2.3:o:apple:iphone_os:7.0:*
cpe:2.3:o:ap…
7.1.2 2024-11-21 11:10
2014-09-18
Show GitHub Exploit DB Packet Storm
3042 -
5.0
MEDIUM NSXMLParser in Foundation in Apple iOS before 8 allows attackers to read arbitrary files via XML data containing an external entity declaration in conjunction with an entity reference, related to an … NVD-CWE-Other
CVE-2014-4374 cpe:2.3:o:apple:iphone_os:7.1:*
cpe:2.3:o:apple:iphone_os:7.1.1:*
cpe:2.3:o:apple:iphone_os:7.0:*
cpe:2.3:o:ap…
7.1.2 2024-11-21 11:10
2014-09-18
Show GitHub Exploit DB Packet Storm
3043 5.5
7.8
MEDIUM
Local
The IntelAccelerator driver in the IOAcceleratorFamily subsystem in Apple iOS before 8 and Apple TV before 7 allows attackers to cause a denial of service (NULL pointer dereference and device restart… NVD-CWE-Other
CVE-2014-4373 cpe:2.3:o:apple:iphone_os:7.1:*
cpe:2.3:o:apple:iphone_os:7.1.1:*
cpe:2.3:o:apple:iphone_os:7.0:*
cpe:2.3:o:ap…
7.1.2 2024-11-21 11:10
2014-09-18
Show GitHub Exploit DB Packet Storm
3044 -
3.6
LOW syslogd in the syslog subsystem in Apple iOS before 8 and Apple TV before 7 allows local users to change the permissions of arbitrary files via a symlink attack on an unspecified file. CWE-59
Link Following
CVE-2014-4372 cpe:2.3:o:apple:iphone_os:7.1:*
cpe:2.3:o:apple:iphone_os:7.1.1:*
cpe:2.3:o:apple:iphone_os:7.0:*
cpe:2.3:o:ap…
7.1.2 2024-11-21 11:10
2014-09-18
Show GitHub Exploit DB Packet Storm
3045 -
1.9
LOW The network-statistics interface in the kernel in Apple iOS before 8 and Apple TV before 7 does not properly initialize memory, which allows attackers to obtain sensitive memory-content and memory-la… CWE-665
 Improper Initialization
CVE-2014-4371 cpe:2.3:o:apple:iphone_os:7.1:*
cpe:2.3:o:apple:iphone_os:7.1.1:*
cpe:2.3:o:apple:iphone_os:7.0:*
cpe:2.3:o:ap…
7.1.2 2024-11-21 11:10
2014-09-18
Show GitHub Exploit DB Packet Storm
3046 -
7.8
HIGH The IOAcceleratorFamily API implementation in Apple iOS before 8 and Apple TV before 7 allows attackers to cause a denial of service (NULL pointer dereference and device crash) via an application tha… NVD-CWE-Other
CVE-2014-4369 cpe:2.3:o:apple:iphone_os:7.1:*
cpe:2.3:o:apple:iphone_os:7.1.1:*
cpe:2.3:o:apple:iphone_os:7.0:*
cpe:2.3:o:ap…
7.1.2 2024-11-21 11:10
2014-09-18
Show GitHub Exploit DB Packet Storm
3047 -
6.9
MEDIUM The Accessibility subsystem in Apple iOS before 8 allows attackers to interfere with screen locking via vectors related to AssistiveTouch events. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-4368 cpe:2.3:o:apple:iphone_os:7.1:*
cpe:2.3:o:apple:iphone_os:7.1.1:*
cpe:2.3:o:apple:iphone_os:7.0:*
cpe:2.3:o:ap…
7.1.2 2024-11-21 11:10
2014-09-18
Show GitHub Exploit DB Packet Storm
3048 -
2.1
LOW Apple iOS before 8 enables Voice Dial during all upgrade actions, which makes it easier for physically proximate attackers to launch unintended calls by speaking a telephone number. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-4367 cpe:2.3:o:apple:iphone_os:7.1:*
cpe:2.3:o:apple:iphone_os:7.1.1:*
cpe:2.3:o:apple:iphone_os:7.0:*
cpe:2.3:o:ap…
7.1.2 2024-11-21 11:10
2014-09-18
Show GitHub Exploit DB Packet Storm
3049 -
5.0
MEDIUM Mail in Apple iOS before 8 does not prevent sending a LOGIN command to a LOGINDISABLED IMAP server, which allows remote attackers to obtain sensitive cleartext information by sniffing the network. CWE-255
Credentials Management
CVE-2014-4366 cpe:2.3:o:apple:iphone_os:7.1:*
cpe:2.3:o:apple:iphone_os:7.1.1:*
cpe:2.3:o:apple:iphone_os:7.0:*
cpe:2.3:o:ap…
7.1.2 2024-11-21 11:10
2014-09-18
Show GitHub Exploit DB Packet Storm
3050 5.6
2.9
MEDIUM
Adjacent
The 802.1X subsystem in Apple iOS before 8 and Apple TV before 7 does not require strong authentication methods, which allows remote attackers to calculate credentials by offering LEAP authentication… CWE-310
Cryptographic Issues
CVE-2014-4364 cpe:2.3:o:apple:iphone_os:7.1:*
cpe:2.3:o:apple:iphone_os:7.1.1:*
cpe:2.3:o:apple:iphone_os:7.0:*
cpe:2.3:o:ap…
7.1.2 2024-11-21 11:10
2014-09-18
Show GitHub Exploit DB Packet Storm