1021
|
- |
|
-
|
-
|
The Cloud MQTT service of the affected products supports wildcard topic
subscription which could allow an attacker to obtain sensitive
information from tapping the service communications.
|
CWE-155
|
CVE-2025-0681
|
2025-01-31 04:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1022
|
- |
|
-
|
-
|
Affected products contain a vulnerability in the device cloud rpc command handling process that could allow remote attackers to take control over arbitrary devices connected to the cloud.
|
CWE-78
OS Command
|
CVE-2025-0680
|
2025-01-31 04:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1023
|
5.5 |
MEDIUM
Local
|
apple
|
macos
|
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.3, macOS Sonoma 14.7.3. Parsing a file may lead to an unexpected app termination.
|
NVD-CWE-noinfo
|
CVE-2025-24112
|
2025-01-31 03:54 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1024
|
7.8 |
HIGH
Local
|
apple
|
macos ipados iphone_os watchos tvos
|
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.3, tvOS 18.3, watchOS 11.3, iOS 18.3 and iPadOS 18.3. A malicious app may be able to gain root …
|
NVD-CWE-noinfo
|
CVE-2025-24107
|
2025-01-31 03:53 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1025
|
5.5 |
MEDIUM
Local
|
apple
|
macos
|
This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15.2. An app may be able to access user-sensitive data.
|
NVD-CWE-noinfo
|
CVE-2024-54549
|
2025-01-31 03:43 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1026
|
5.5 |
MEDIUM
Local
|
apple
|
iphone_os visionos macos watchos tvos ipados
|
The issue was addressed with improved memory handling. This issue is fixed in iPadOS 17.7.4, macOS Ventura 13.7.3, macOS Sonoma 14.7.3, visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, wat…
|
NVD-CWE-noinfo
|
CVE-2025-24086
|
2025-01-31 03:18 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1027
|
4.7 |
MEDIUM
Local
|
apple
|
macos
|
A race condition was addressed with additional validation. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. An app may be able to access user-sensitive data.
|
CWE-362
Race Condition
|
CVE-2025-24094
|
2025-01-31 03:17 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1028
|
5.5 |
MEDIUM
Local
|
apple
|
macos
|
The issue was addressed with additional permissions checks. This issue is fixed in macOS Sequoia 15.3. An app may be able to access protected user data.
|
CWE-281
Improper Preservation of Permissions
|
CVE-2025-24087
|
2025-01-31 03:17 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1029
|
3.3 |
LOW
Local
|
apple
|
macos
|
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. An app may be able to access information about a user's c…
|
NVD-CWE-noinfo
|
CVE-2025-24100
|
2025-01-31 03:16 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1030
|
5.5 |
MEDIUM
Local
|
apple
|
macos
|
This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.3. A malicious app may be able to access arbitrary files.
|
NVD-CWE-noinfo
|
CVE-2025-24096
|
2025-01-31 03:16 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|