Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
iOS Number Of NVD 3626 CRITICAL 138 HIGH 1666 MEDIUM 1480 LOW 246
URL https://www.apple.com/jp/ios/
Explanation This is the operating system installed on the iPhone provided by Apple.
Tag
  • Apple
  • Mobile

Add Information URL
No Type Name URL
1 https://support.apple.com/en-us/HT201222
2 https://developer.apple.com/documentation/ios-ipados-release-notes
3 https://en.wikipedia.org/wiki/IOS_version_history

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
3461 iOS 26 26.5.1 June 1, 2026 Sept. 15, 2025 1 40 38 1
3462 iOS 18 18.7.9 May 11, 2026 Sept. 16, 2024 8 64 89 8
3463 iOS 17 17.6.1 Aug. 27, 2024 Sept. 18, 2023 9 114 178 22
3464 iOS 16 16.4.1 April 7, 2023 Sept. 12, 2022 25 244 303 56
3465 iOS 15 15.7 Sept. 12, 2022 Sept. 20, 2021 39 395 388 72
3466 iOS 14 14.8 Sept. 13, 2021 July 9, 2020 53 566 495 79
3467 iOS 13 13.7 Sept. 1, 2020 Sept. 19, 2019 65 746 579 96
3468 iOS 12 12.5.1 Jan. 11, 2021 Sept. 17, 2018 84 903 659 108
3469 iOS 11 11.4.1 July 9, 2018 Sept. 19, 2017 94 1068 728 116
3470 iOS 10 10.3.4 July 22, 2019 Sept. 13, 2016 120 1289 828 133
3471 iOS 9 9.3.6 July 22, 2019 Sept. 16, 2015 134 1415 955 149
3472 iOS 8 8.4.1 Aug. 13, 2015 Sept. 17, 2014 132 1470 1168 181
3473 iOS 7 7.0.6 Feb. 21, 2014 Sept. 18, 2013 132 1491 1231 204
3474 iOS 6 6.0.2 Dec. 18, 2012 Sept. 19, 2012 132 1517 1294 216
3475 iOS 5 5.0.1 Nov. 10, 2011 Oct. 12, 2011 132 1586 1368 228
3476 iOS 4 4.0.2 Aug. 11, 2010 June 21, 2010 133 1613 1423 235
3477 iPhone OS 3 3.0.1 July 31, 2009 June 17, 2009 133 1620 1438 238
3478 iPhone OS 2 1.1.5 July 15, 2008 July 11, 2008 134 1632 1433 236
3479 iPhone OS 1 1.0.2 Aug. 21, 2007 June 29, 2007 133 1637 1434 237
3480 iOS7.1 7.1.2 132 1484 1207 198
3481 iOS6.1 6.1.6 132 1508 1275 212
3482 iOS6.0 6.0.2 132 1517 1293 216
3483 iOS5.1 5.1.1 132 1527 1346 226
3484 iOS4.3 4.3.5 132 1605 1396 234
3485 iOS4.2 4.2.9 132 1607 1401 234
3486 iOS4.1 4.1 133 1610 1413 234
3487 iOS3.2 3.2.2 133 1614 1428 236
3488 iOS3.1 3.1.3 133 1617 1436 236
3489 iOS2.2 2.2.1 133 1628 1432 232
3490 iOS2.1 2.1.1 133 1632 1433 236
3491 iOS2.0 2.0.2 134 1632 1432 236
3492 iOS16.2 16.2 19 209 270 55
3493 iOS 27 138 1666 1480 246
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
3461 -
5.0
MEDIUM The UIKit Alerts component in Apple iOS before 5 allows remote attackers to cause a denial of service (device hang) via a long tel: URL that triggers a large size for the acceptance dialog. CWE-399
 Resource Management Errors
CVE-2011-3432 cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:*
cpe:2.3:…
2024-11-21 10:30
2011-10-14
Show GitHub Exploit DB Packet Storm
3462 -
2.1
LOW The Home screen component in Apple iOS before 5 does not properly support a certain application-switching gesture, which might allow physically proximate attackers to obtain sensitive state informati… CWE-200
Information Exposure
CVE-2011-3431 cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:*
cpe:2.3:…
2024-11-21 10:30
2011-10-14
Show GitHub Exploit DB Packet Storm
3463 -
9.3
HIGH The Settings component in Apple iOS before 5, when a configuration profile is used for a locale other than English, does not properly implement localization, which makes it easier for attackers to ha… NVD-CWE-Other
CVE-2011-3430 cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:*
cpe:2.3:…
2024-11-21 10:30
2011-10-14
Show GitHub Exploit DB Packet Storm
3464 -
2.1
LOW The Settings component in Apple iOS before 5 stores a cleartext parental-restrictions passcode in an unspecified file, which might allow physically proximate attackers to obtain sensitive information… CWE-255
Credentials Management
CVE-2011-3429 cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:*
cpe:2.3:…
2024-11-21 10:30
2011-10-14
Show GitHub Exploit DB Packet Storm
3465 -
2.6
LOW The Data Security component in Apple iOS before 5 and Apple TV before 4.4 does not properly restrict use of the MD5 hash algorithm within X.509 certificates, which makes it easier for man-in-the-midd… CWE-200
Information Exposure
CVE-2011-3427 cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:*
cpe:2.3:…
2024-11-21 10:30
2011-10-14
Show GitHub Exploit DB Packet Storm
3466 -
4.3
MEDIUM Cross-site scripting (XSS) vulnerability in Safari in Apple iOS before 5 allows remote web servers to inject arbitrary web script or HTML via a file accompanied by a "Content-Disposition: attachment"… CWE-79
Cross-site Scripting
CVE-2011-3426 cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:*
cpe:2.3:…
2024-11-21 10:30
2011-10-14
Show GitHub Exploit DB Packet Storm
3467 -
6.8
MEDIUM Double free vulnerability in OfficeImport in Apple iOS before 5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted Excel spreadsheet. CWE-94
Code Injection
CVE-2011-3261 cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:*
cpe:2.3:…
2024-11-21 10:30
2011-10-14
Show GitHub Exploit DB Packet Storm
3468 -
6.8
MEDIUM Buffer overflow in OfficeImport in Apple iOS before 5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted Microsoft Word document. CWE-94
Code Injection
CVE-2011-3260 cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:*
cpe:2.3:…
2024-11-21 10:30
2011-10-14
Show GitHub Exploit DB Packet Storm
3469 -
5.0
MEDIUM The kernel in Apple iOS before 5 and Apple TV before 4.4 does not properly recover memory allocated for incomplete TCP connections, which allows remote attackers to cause a denial of service (resourc… CWE-399
 Resource Management Errors
CVE-2011-3259 cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:*
cpe:2.3:…
2024-11-21 10:30
2011-10-14
Show GitHub Exploit DB Packet Storm
3470 -
2.1
LOW The Data Access component in Apple iOS before 5 does not properly handle the existence of multiple user accounts on the same mail server, which allows local users to bypass intended access restrictio… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-3257 cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:-
cpe:2.3:o:apple:iphone_os:4.3.5:*
cpe:2.3:…
2024-11-21 10:30
2011-10-14
Show GitHub Exploit DB Packet Storm