|
210411
|
7.8 |
HIGH
Local
|
apple
|
iphone_os tvos ipados mac_os_x
|
A logic issue was addressed with improved state management. This issue is fixed in tvOS 14.0, iOS 14.0 and iPadOS 14.0. An application may be able to execute arbitrary code with kernel privileges.
|
NVD-CWE-noinfo
|
CVE-2020-10013
|
2024-11-21 13:54 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210412
|
6.1 |
MEDIUM
Network
|
apple
|
macos mac_os_x
|
An access issue was addressed with improved access restrictions. This issue is fixed in macOS Big Sur 11.0.1. Processing a maliciously crafted document may lead to a cross site scripting attack.
|
CWE-79
Cross-site Scripting
|
CVE-2020-10012
|
2024-11-21 13:54 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210413
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x tvos iphone_os ipados
|
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 14.2 and iPadOS 14.2, macOS Catalina 10.15.7, Security Update 2020-005 High Sierra, Security Update 2020-…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-10011
|
2024-11-21 13:54 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210414
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x tvos iphone_os watchos ipados
|
A path handling issue was addressed with improved validation. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. A local attacker may be able to elevate th…
|
CWE-22
Path Traversal
|
CVE-2020-10010
|
2024-11-21 13:54 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210415
|
5.5 |
MEDIUM
Local
|
apple
|
mac_os_x
|
A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1. A sandboxed process may be able to circumvent sandbox restrictions.
|
NVD-CWE-noinfo
|
CVE-2020-10009
|
2024-11-21 13:54 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210416
|
5.5 |
MEDIUM
Local
|
apple
|
mac_os_x
|
A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1. A malicious application may be able to determine kernel memory layout.
|
NVD-CWE-noinfo
|
CVE-2020-10007
|
2024-11-21 13:54 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210417
|
5.5 |
MEDIUM
Local
|
apple
|
mac_os_x
|
This issue was addressed with improved entitlements. This issue is fixed in macOS Big Sur 11.0.1. A malicious application may be able to access restricted files.
|
NVD-CWE-Other
|
CVE-2020-10006
|
2024-11-21 13:54 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210418
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x tvos iphone_os ipados
|
A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2. Opening a maliciously crafted file may lead to unexpected applicatio…
|
NVD-CWE-noinfo
|
CVE-2020-10004
|
2024-11-21 13:54 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210419
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x tvos iphone_os watchos ipados
|
An issue existed within the path validation logic for symlinks. This issue was addressed with improved path sanitization. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, tvOS 1…
|
CWE-59
Link Following
|
CVE-2020-10003
|
2024-11-21 13:54 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210420
|
5.5 |
MEDIUM
Local
|
apple
|
mac_os_x tvos itunes iphone_os watchos icloud ipados
|
A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 14.2 and iPadOS 14.2, iCloud for Windows 11.5, tvOS 14.2, iTunes 12.11 for Wi…
|
NVD-CWE-noinfo
|
CVE-2020-10002
|
2024-11-21 13:54 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|