Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
iOS Number Of NVD 3610 CRITICAL 137 HIGH 1663 MEDIUM 1468 LOW 246
URL https://www.apple.com/jp/ios/
Explanation This is the operating system installed on the iPhone provided by Apple.
Tag
  • Mobile
  • Apple

Add Information URL
No Type Name URL
1 https://support.apple.com/en-us/HT201222
2 https://developer.apple.com/documentation/ios-ipados-release-notes
3 https://en.wikipedia.org/wiki/IOS_version_history

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
3581 iOS17 17.6.1 Aug. 27, 2024 Sept. 18, 2023 8 111 166 22
3582 iOS16 16.4.1 April 7, 2023 Sept. 12, 2022 24 241 291 56
3583 iOS 15 15.7 Sept. 12, 2022 Sept. 20, 2021 38 392 376 72
3584 iOS 14 14.8 Sept. 13, 2021 July 9, 2020 52 563 483 79
3585 iOS 13 13.7 Sept. 1, 2020 Sept. 19, 2019 64 743 567 96
3586 iOS 12 12.5.1 Jan. 11, 2021 Sept. 17, 2018 83 900 647 108
3587 iOS 11 11.4.1 July 9, 2018 Sept. 19, 2017 93 1065 716 116
3588 iOS 10 10.3.4 July 22, 2019 Sept. 13, 2016 119 1286 816 133
3589 iOS 9 9.3.6 July 22, 2019 Sept. 16, 2015 133 1412 943 149
3590 iOS 8 8.4.1 Aug. 13, 2015 Sept. 17, 2014 131 1467 1156 181
3591 iOS 7 7.0.6 Feb. 21, 2014 Sept. 18, 2013 131 1488 1219 204
3592 iOS 6 6.0.2 Dec. 18, 2012 Sept. 19, 2012 131 1514 1282 216
3593 iOS 5 5.0.1 Nov. 10, 2011 Oct. 12, 2011 131 1583 1356 228
3594 iOS 4 4.0.2 Aug. 11, 2010 June 21, 2010 132 1610 1411 235
3595 iPhone OS 3 3.0.1 July 31, 2009 June 17, 2009 132 1617 1426 238
3596 iPhone OS 2 1.1.5 July 15, 2008 July 11, 2008 133 1629 1421 236
3597 iPhone OS 1 1.0.2 Aug. 21, 2007 June 29, 2007 132 1634 1422 237
3598 iOS7.1 7.1.2 131 1481 1195 198
3599 iOS6.1 6.1.6 131 1505 1263 212
3600 iOS6.0 6.0.2 131 1514 1281 216
3601 iOS5.1 5.1.1 131 1524 1334 226
3602 iOS4.3 4.3.5 131 1602 1384 234
3603 iOS4.2 4.2.9 131 1604 1389 234
3604 iOS4.1 4.1 132 1607 1401 234
3605 iOS3.2 3.2.2 132 1611 1416 236
3606 iOS3.1 3.1.3 132 1614 1424 236
3607 iOS2.2 2.2.1 132 1625 1420 232
3608 iOS2.1 2.1.1 132 1629 1421 236
3609 iOS2.0 2.0.2 133 1629 1420 236
3610 iOS16.2 16.2 18 206 258 55
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
3581 -
4.3
MEDIUM The Mail component in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 does not provide an option to disable remote image loading in HTML email, which allows remote at… NVD-CWE-Other
CVE-2009-0960 cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2.1:*
cpe:2.3:o:ap…
2026-04-23 09:35
2009-06-20
Show GitHub Exploit DB Packet Storm
3582 -
7.1
HIGH The MPEG-4 video codec in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to cause a denial of service (device reset) via a crafted MPEG-4 vid… CWE-20
 Improper Input Validation 
CVE-2009-0959 cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2.1:*
cpe:2.3:o:ap…
2026-04-23 09:35
2009-06-20
Show GitHub Exploit DB Packet Storm
3583 -
4.3
MEDIUM Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 stores an exception for a hostname when the user accepts an untrusted Exchange server certificate, which causes it to … CWE-200
Information Exposure
CVE-2009-0958 cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2.1:*
cpe:2.3:o:ap…
2026-04-23 09:35
2009-06-20
Show GitHub Exploit DB Packet Storm
3584 -
4.3
MEDIUM Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary … CWE-79
Cross-site Scripting
CVE-2009-1702 cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2.1:*
cpe:2.3:o:apple:iphone_os:2.1:*
cpe:2.3:o:ap…
2026-04-23 09:35
2009-06-11
Show GitHub Exploit DB Packet Storm
3585 -
9.3
HIGH Use-after-free vulnerability in the JavaScript DOM implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attac… CWE-399
 Resource Management Errors
CVE-2009-1701 cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2.1:*
cpe:2.3:o:apple:iphone_os:2.1:*
cpe:2.3:o:ap…
2026-04-23 09:35
2009-06-11
Show GitHub Exploit DB Packet Storm
3586 -
4.3
MEDIUM The XSLT implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle redirects, which allows remote attac… CWE-200
Information Exposure
CVE-2009-1700 cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2.1:*
cpe:2.3:o:apple:iphone_os:2.1:*
cpe:2.3:o:ap…
2026-04-23 09:35
2009-06-11
Show GitHub Exploit DB Packet Storm
3587 7.5
7.1
HIGH
Network
The XSL stylesheet implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle XML external entities, whi… CWE-611
XXE
CVE-2009-1699 cpe:2.3:o:apple:iphone_os:*:* 1.0.0 2.2.1 2026-04-23 09:35
2009-06-11
Show GitHub Exploit DB Packet Storm
3588 -
9.3
HIGH WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not initialize a pointer during handling of a Cascading Style Sheets (CSS) attr fun… CWE-94
Code Injection
CVE-2009-1698 cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2:*
cpe:2.3:o:apple:iphone_os:2.2.1:*
cpe:2.3:o:ap…
2026-04-23 09:35
2009-06-11
Show GitHub Exploit DB Packet Storm
3589 -
9.3
HIGH Use-after-free vulnerability in WebKit, as used in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, iPhone OS for iPod touch 1.1 through 2.2.1, Google Chrome 1.0.154.53, and possibly other produ… CWE-399
 Resource Management Errors
CVE-2009-1690 cpe:2.3:o:apple:iphone_os:2.2:-
cpe:2.3:o:apple:iphone_os:2.2:-
cpe:2.3:o:apple:iphone_os:2.2.1:-
cpe:2.3:o:ap…
2026-04-23 09:35
2009-06-10
Show GitHub Exploit DB Packet Storm
3590 -
7.5
HIGH Multiple integer overflows in FreeType 2.3.9 and earlier allow remote attackers to execute arbitrary code via vectors related to large values in certain inputs in (1) smooth/ftsmooth.c, (2) sfnt/ttcm… CWE-190
 Integer Overflow or Wraparound
CVE-2009-0946 cpe:2.3:o:apple:iphone_os:*:* 1.0.0 2.2.1 2026-04-23 09:35
2009-04-17
Show GitHub Exploit DB Packet Storm