|
441
|
7.8
-
|
HIGH
Local
|
A validation issue was addressed with improved logic. This issue is fixed in watchOS 9.6.2, iOS 16.6.1 and iPadOS 16.6.1. A maliciously crafted attachment may result in arbitrary code execution. Appl…
|
NVD-CWE-noinfo
|
CVE-2023-41061
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
16.6.1
|
2024-11-21 17:20
2023-09-8
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
442
|
3.3
-
|
LOW
Local
|
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Ventura 13.5. An app may be able to read sensitive location information.
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2023-40392
|
cpe:2.3:o:apple:iphone_os:*:*
|
16.0
|
|
|
15.7.8 16.6
|
2024-11-21 17:19
2023-09-7
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
443
|
3.3
-
|
LOW
Local
|
This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Ventura 13.5. An app may be able to determine a user’s current location.
|
NVD-CWE-noinfo
|
CVE-2023-38605
|
cpe:2.3:o:apple:iphone_os:*:*
|
16.0
|
|
|
15.7.8 16.6
|
2024-11-21 17:13
2023-09-7
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
444
|
5.5
-
|
MEDIUM
Local
|
A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Ventura 13.4, tvOS 16.5, iOS 16.5 and iPadOS 16.5, watchOS 9.5. An app may be able to access user…
|
NVD-CWE-noinfo
|
CVE-2023-32432
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
16.5
|
2024-11-21 17:03
2023-09-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
445
|
5.3
-
|
MEDIUM
Network
|
A permissions issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Ventura 13.4, tvOS 16.5, iOS 16.5 and iPadOS 16.5, watchOS 9.5. An attacker may be abl…
|
CWE-276
Incorrect Default Permissions
|
CVE-2023-34352
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
16.5
|
2024-11-21 17:07
2023-09-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
446
|
5.5
-
|
MEDIUM
Local
|
This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in tvOS 16.3, macOS Ventura 13.2, watchOS 9.3, iOS 16.3 and iPadOS 16.3. An app may be able to bypas…
|
NVD-CWE-noinfo
|
CVE-2023-32438
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
16.3
|
2024-11-21 17:03
2023-09-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
447
|
7.8
-
|
HIGH
Local
|
This issue was addressed with improved file handling. This issue is fixed in macOS Ventura 13.4, tvOS 16.5, iOS 16.5 and iPadOS 16.5, watchOS 9.5. An app may be able to gain root privileges.
|
NVD-CWE-noinfo
|
CVE-2023-32428
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
16.5
|
2024-11-21 17:03
2023-09-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
448
|
7.8
-
|
HIGH
Local
|
The issue was addressed with improved memory handling. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5. An app may be able to gain elevated privileges.
|
NVD-CWE-noinfo
|
CVE-2023-32425
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
16.5
|
2024-11-21 17:03
2023-09-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
449
|
4.3
-
|
MEDIUM
Network
|
A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.2, iOS 16.3 and iPadOS 16.3. A user may send a text from a secondary eSIM despite configuring a con…
|
NVD-CWE-noinfo
|
CVE-2023-28208
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
16.3
|
2024-11-21 16:54
2023-09-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
450
|
8.8
-
|
HIGH
Network
|
A type confusion issue was addressed with improved checks. This issue is fixed in iOS 16.4 and iPadOS 16.4, macOS Ventura 13.3. Processing web content may lead to arbitrary code execution.
|
CWE-843
Type Confusion
|
CVE-2023-32358
|
cpe:2.3:o:apple:iphone_os:*:*
|
16.0
|
|
|
16.4
|
2024-11-21 17:03
2023-08-15
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|