Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
iOS Number Of NVD 3541 CRITICAL 137 HIGH 1622 MEDIUM 1441 LOW 245
URL https://www.apple.com/jp/ios/
Explanation This is the operating system installed on the iPhone provided by Apple.
Tag
  • Apple
  • Mobile

Add Information URL
No Type Name URL
1 https://support.apple.com/en-us/HT201222
2 https://developer.apple.com/documentation/ios-ipados-release-notes
3 https://en.wikipedia.org/wiki/IOS_version_history

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
3501 iOS17 17.6.1 Aug. 27, 2024 Sept. 18, 2023 8 70 139 21
3502 iOS16 16.4.1 April 7, 2023 Sept. 12, 2022 24 200 264 55
3503 iOS 15 15.7 Sept. 12, 2022 Sept. 20, 2021 38 351 349 71
3504 iOS 14 14.8 Sept. 13, 2021 July 9, 2020 52 522 456 78
3505 iOS 13 13.7 Sept. 1, 2020 Sept. 19, 2019 64 702 540 95
3506 iOS 12 12.5.1 Jan. 11, 2021 Sept. 17, 2018 83 859 620 107
3507 iOS 11 11.4.1 July 9, 2018 Sept. 19, 2017 93 1024 689 115
3508 iOS 10 10.3.4 July 22, 2019 Sept. 13, 2016 119 1245 789 132
3509 iOS 9 9.3.6 July 22, 2019 Sept. 16, 2015 133 1371 916 148
3510 iOS 8 8.4.1 Aug. 13, 2015 Sept. 17, 2014 131 1426 1129 180
3511 iOS 7 7.0.6 Feb. 21, 2014 Sept. 18, 2013 131 1447 1192 203
3512 iOS 6 6.0.2 Dec. 18, 2012 Sept. 19, 2012 131 1473 1255 215
3513 iOS 5 5.0.1 Nov. 10, 2011 Oct. 12, 2011 131 1542 1329 227
3514 iOS 4 4.0.2 Aug. 11, 2010 June 21, 2010 132 1569 1384 234
3515 iPhone OS 3 3.0.1 July 31, 2009 June 17, 2009 132 1576 1399 237
3516 iPhone OS 2 1.1.5 July 15, 2008 July 11, 2008 133 1588 1394 235
3517 iPhone OS 1 1.0.2 Aug. 21, 2007 June 29, 2007 132 1593 1395 236
3518 iOS7.1 7.1.2 131 1440 1168 197
3519 iOS6.1 6.1.6 131 1464 1236 211
3520 iOS6.0 6.0.2 131 1473 1254 215
3521 iOS5.1 5.1.1 131 1483 1307 225
3522 iOS4.3 4.3.5 131 1561 1357 233
3523 iOS4.2 4.2.9 131 1563 1362 233
3524 iOS4.1 4.1 132 1566 1374 233
3525 iOS3.2 3.2.2 132 1570 1389 235
3526 iOS3.1 3.1.3 132 1573 1397 235
3527 iOS2.2 2.2.1 132 1584 1393 231
3528 iOS2.1 2.1.1 132 1588 1394 235
3529 iOS2.0 2.0.2 133 1588 1393 235
3530 iOS16.2 16.2 18 165 231 54
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
3501 -
6.8
MEDIUM Multiple heap-based buffer overflows in the AudioCodecs library in the CoreAudio component in Apple iPhone OS before 3.1, and iPhone OS before 3.1.1 for iPod touch, allow remote attackers to execute … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-2206 cpe:2.3:o:apple:iphone_os:3.0:*
cpe:2.3:o:apple:iphone_os:3.0:*
cpe:2.3:o:apple:iphone_os:3.0.1:*
cpe:2.3:o:ap…

3.0.1
3.1


2026-04-23 09:35
2009-09-11
Show GitHub Exploit DB Packet Storm
3502 -
5.8
MEDIUM Incomplete blacklist vulnerability in WebKit in Apple Safari before 4.0.3, as used on iPhone OS before 3.1, iPhone OS before 3.1.1 for iPod touch, and other platforms, allows remote attackers to spoo… NVD-CWE-Other
CVE-2009-2199 cpe:2.3:o:apple:iphone_os:3.0:*
cpe:2.3:o:apple:iphone_os:3.0:*
cpe:2.3:o:apple:iphone_os:3.0.1:*
cpe:2.3:o:ap…

3.0.1
3.1


2026-04-23 09:35
2009-08-13
Show GitHub Exploit DB Packet Storm
3503 6.5
4.3
MEDIUM
Network
Multiple use-after-free vulnerabilities in libxml2 2.5.10, 2.6.16, 2.6.26, 2.6.27, and 2.6.32, and libxml 1.8.17, allow context-dependent attackers to cause a denial of service (application crash) vi… CWE-416
 Use After Free
CVE-2009-2416 cpe:2.3:o:apple:iphone_os:*:* 2.0 4.0 2026-04-23 09:35
2009-08-12
Show GitHub Exploit DB Packet Storm
3504 -
10.0
HIGH Unspecified vulnerability in the CoreTelephony component in Apple iPhone OS before 3.0.1 allows remote attackers to execute arbitrary code, obtain GPS coordinates, or enable the microphone via an SMS… NVD-CWE-noinfo
CVE-2009-2204 cpe:2.3:o:apple:iphone_os:2.1:*
cpe:2.3:o:apple:iphone_os:2.0:*
cpe:2.3:o:apple:iphone_os:2.0.2:*
cpe:2.3:o:ap…
3.0 2026-04-23 09:35
2009-08-4
Show GitHub Exploit DB Packet Storm
3505 -
9.3
HIGH WebKit in Apple Safari before 4.0.2, as used on iPhone OS before 3.1, iPhone OS before 3.1.1 for iPod touch, and other platforms; KHTML in kdelibs in KDE; QtWebKit (aka Qt toolkit); and possibly othe… CWE-189
Numeric Errors
CVE-2009-1725 cpe:2.3:o:apple:iphone_os:3.0:*
cpe:2.3:o:apple:iphone_os:3.0:*
cpe:2.3:o:apple:iphone_os:3.0.1:*
cpe:2.3:o:ap…

3.0.1
3.1


2026-04-23 09:35
2009-07-10
Show GitHub Exploit DB Packet Storm
3506 -
4.3
MEDIUM Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0.2, as used on iPhone OS before 3.1, iPhone OS before 3.1.1 for iPod touch, and other platforms, allows remote attackers t… CWE-79
Cross-site Scripting
CVE-2009-1724 cpe:2.3:o:apple:iphone_os:3.0:*
cpe:2.3:o:apple:iphone_os:3.0:*
cpe:2.3:o:apple:iphone_os:3.0.1:*
cpe:2.3:o:ap…

3.0.1
3.1


2026-04-23 09:35
2009-07-10
Show GitHub Exploit DB Packet Storm
3507 -
7.1
HIGH WebKit before r41741, as used in Apple iPhone OS 1.0 through 2.2.1, iPhone OS for iPod touch 1.1 through 2.2.1, Safari, and other software, allows remote attackers to cause a denial of service (memor… CWE-399
 Resource Management Errors
CVE-2009-1692 cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2.1:*
cpe:2.3:o:ap…
2026-04-23 09:35
2009-06-20
Show GitHub Exploit DB Packet Storm
3508 -
7.8
HIGH The Telephony component in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to cause a denial of service (device reset) via a crafted ICMP echo… NVD-CWE-Other
CVE-2009-1683 cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2.1:*
cpe:2.3:o:ap…
2026-04-23 09:35
2009-06-20
Show GitHub Exploit DB Packet Storm
3509 -
2.1
LOW Safari in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly clear the search history when it is cleared from the Settings application, which allows ph… CWE-200
Information Exposure
CVE-2009-1680 cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2.1:*
cpe:2.3:o:ap…
2026-04-23 09:35
2009-06-20
Show GitHub Exploit DB Packet Storm
3510 -
2.1
LOW The Profiles component in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1, when installing a configuration profile, can replace the password policy from Exchange Acti… CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-1679 cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2.1:*
cpe:2.3:o:ap…
2026-04-23 09:35
2009-06-20
Show GitHub Exploit DB Packet Storm