Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
iOS Number Of NVD 3611 CRITICAL 137 HIGH 1663 MEDIUM 1469 LOW 246
URL https://www.apple.com/jp/ios/
Explanation This is the operating system installed on the iPhone provided by Apple.
Tag
  • Mobile
  • Apple

Add Information URL
No Type Name URL
1 https://support.apple.com/en-us/HT201222
2 https://developer.apple.com/documentation/ios-ipados-release-notes
3 https://en.wikipedia.org/wiki/IOS_version_history

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
3201 iOS 17 17.6.1 Aug. 27, 2024 Sept. 18, 2023 8 111 167 22
3202 iOS 16 16.4.1 April 7, 2023 Sept. 12, 2022 24 241 292 56
3203 iOS 15 15.7 Sept. 12, 2022 Sept. 20, 2021 38 392 377 72
3204 iOS 14 14.8 Sept. 13, 2021 July 9, 2020 52 563 484 79
3205 iOS 13 13.7 Sept. 1, 2020 Sept. 19, 2019 64 743 568 96
3206 iOS 12 12.5.1 Jan. 11, 2021 Sept. 17, 2018 83 900 648 108
3207 iOS 11 11.4.1 July 9, 2018 Sept. 19, 2017 93 1065 717 116
3208 iOS 10 10.3.4 July 22, 2019 Sept. 13, 2016 119 1286 817 133
3209 iOS 9 9.3.6 July 22, 2019 Sept. 16, 2015 133 1412 944 149
3210 iOS 8 8.4.1 Aug. 13, 2015 Sept. 17, 2014 131 1467 1157 181
3211 iOS 7 7.0.6 Feb. 21, 2014 Sept. 18, 2013 131 1488 1220 204
3212 iOS 6 6.0.2 Dec. 18, 2012 Sept. 19, 2012 131 1514 1283 216
3213 iOS 5 5.0.1 Nov. 10, 2011 Oct. 12, 2011 131 1583 1357 228
3214 iOS 4 4.0.2 Aug. 11, 2010 June 21, 2010 132 1610 1412 235
3215 iPhone OS 3 3.0.1 July 31, 2009 June 17, 2009 132 1617 1427 238
3216 iPhone OS 2 1.1.5 July 15, 2008 July 11, 2008 133 1629 1422 236
3217 iPhone OS 1 1.0.2 Aug. 21, 2007 June 29, 2007 132 1634 1423 237
3218 iOS7.1 7.1.2 131 1481 1196 198
3219 iOS6.1 6.1.6 131 1505 1264 212
3220 iOS6.0 6.0.2 131 1514 1282 216
3221 iOS5.1 5.1.1 131 1524 1335 226
3222 iOS4.3 4.3.5 131 1602 1385 234
3223 iOS4.2 4.2.9 131 1604 1390 234
3224 iOS4.1 4.1 132 1607 1402 234
3225 iOS3.2 3.2.2 132 1611 1417 236
3226 iOS3.1 3.1.3 132 1614 1425 236
3227 iOS2.2 2.2.1 132 1625 1421 232
3228 iOS2.1 2.1.1 132 1629 1422 236
3229 iOS2.0 2.0.2 133 1629 1421 236
3230 iOS16.2 16.2 18 206 259 55
3231 iOS 26 26.5.1 0 0 0 0
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
3201 -
4.3
MEDIUM Mobile Safari in Apple iOS before 7 allows remote attackers to spoof the URL bar via a crafted web site. CWE-20
 Improper Input Validation 
CVE-2013-5152 cpe:2.3:o:apple:iphone_os:6.1:*
cpe:2.3:o:apple:iphone_os:6.1.3:*
cpe:2.3:o:apple:iphone_os:6.1.2:*
cpe:2.3:o:…
6.1.4 2024-11-21 10:57
2013-09-19
Show GitHub Exploit DB Packet Storm
3202 -
4.3
MEDIUM Mobile Safari in Apple iOS before 7 does not prevent HTML interpretation of a document served with a text/plain content type, which allows remote attackers to conduct cross-site scripting (XSS) attac… CWE-79
Cross-site Scripting
CVE-2013-5151 cpe:2.3:o:apple:iphone_os:6.1:*
cpe:2.3:o:apple:iphone_os:6.1.3:*
cpe:2.3:o:apple:iphone_os:6.1.2:*
cpe:2.3:o:…
6.1.4 2024-11-21 10:57
2013-09-19
Show GitHub Exploit DB Packet Storm
3203 -
1.9
LOW The history-clearing feature in Safari in Apple iOS before 7 does not clear the back/forward history of an open tab, which allows physically proximate attackers to obtain sensitive information by lev… CWE-200
Information Exposure
CVE-2013-5150 cpe:2.3:o:apple:iphone_os:6.1:*
cpe:2.3:o:apple:iphone_os:6.1.3:*
cpe:2.3:o:apple:iphone_os:6.1.2:*
cpe:2.3:o:…
6.1.4 2024-11-21 10:57
2013-09-19
Show GitHub Exploit DB Packet Storm
3204 -
4.3
MEDIUM The Push Notifications subsystem in Apple iOS before 7 provides the push-notification token to an app without user approval, which allows attackers to obtain sensitive information via an app that emp… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5149 cpe:2.3:o:apple:iphone_os:6.1:*
cpe:2.3:o:apple:iphone_os:6.1.3:*
cpe:2.3:o:apple:iphone_os:6.1.2:*
cpe:2.3:o:…
6.1.4 2024-11-21 10:57
2013-09-19
Show GitHub Exploit DB Packet Storm
3205 -
3.7
LOW Passcode Lock in Apple iOS before 7 does not properly manage the lock state, which allows physically proximate attackers to bypass an intended passcode requirement by leveraging a race condition invo… CWE-362
Race Condition
CVE-2013-5147 cpe:2.3:o:apple:iphone_os:6.1:*
cpe:2.3:o:apple:iphone_os:6.1.3:*
cpe:2.3:o:apple:iphone_os:6.1.2:*
cpe:2.3:o:…
6.1.4 2024-11-21 10:57
2013-09-19
Show GitHub Exploit DB Packet Storm
3206 -
6.3
MEDIUM kextd in Kext Management in Apple iOS before 7 does not properly verify authorization for IPC messages, which allows local users to (1) load or (2) unload kernel extensions via a crafted message. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5145 cpe:2.3:o:apple:iphone_os:6.1:*
cpe:2.3:o:apple:iphone_os:6.1.3:*
cpe:2.3:o:apple:iphone_os:6.1.2:*
cpe:2.3:o:…
6.1.4 2024-11-21 10:57
2013-09-19
Show GitHub Exploit DB Packet Storm
3207 -
4.9
MEDIUM The kernel in Apple iOS before 7 does not initialize unspecified kernel data structures, which allows local users to obtain sensitive information from kernel stack memory via the (1) msgctl API or (2… CWE-200
Information Exposure
CVE-2013-5142 cpe:2.3:o:apple:iphone_os:6.1:*
cpe:2.3:o:apple:iphone_os:6.1.3:*
cpe:2.3:o:apple:iphone_os:6.1.2:*
cpe:2.3:o:…
6.1.4 2024-11-21 10:57
2013-09-19
Show GitHub Exploit DB Packet Storm
3208 -
7.1
HIGH The kernel in Apple iOS before 7 uses an incorrect data size for a certain integer variable, which allows attackers to cause a denial of service (infinite loop and device hang) via a crafted applicat… CWE-189
Numeric Errors
CVE-2013-5141 cpe:2.3:o:apple:iphone_os:6.1:*
cpe:2.3:o:apple:iphone_os:6.1.3:*
cpe:2.3:o:apple:iphone_os:6.1.2:*
cpe:2.3:o:…
6.1.4 2024-11-21 10:57
2013-09-19
Show GitHub Exploit DB Packet Storm
3209 -
7.8
HIGH The kernel in Apple iOS before 7 allows remote attackers to cause a denial of service (assertion failure and device restart) via an invalid packet fragment. CWE-20
 Improper Input Validation 
CVE-2013-5140 cpe:2.3:o:apple:iphone_os:6.1:*
cpe:2.3:o:apple:iphone_os:6.1.3:*
cpe:2.3:o:apple:iphone_os:6.1.2:*
cpe:2.3:o:…
6.1.4 2024-11-21 10:57
2013-09-19
Show GitHub Exploit DB Packet Storm
3210 -
9.3
HIGH The IOSerialFamily driver in Apple iOS before 7 allows attackers to execute arbitrary code or cause a denial of service (out-of-bounds array access) via a crafted application. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-5139 cpe:2.3:o:apple:iphone_os:6.1:*
cpe:2.3:o:apple:iphone_os:6.1.3:*
cpe:2.3:o:apple:iphone_os:6.1.2:*
cpe:2.3:o:…
6.1.4 2024-11-21 10:57
2013-09-19
Show GitHub Exploit DB Packet Storm