Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
iOS Number Of NVD 3626 CRITICAL 138 HIGH 1666 MEDIUM 1480 LOW 246
URL https://www.apple.com/jp/ios/
Explanation This is the operating system installed on the iPhone provided by Apple.
Tag
  • Apple
  • Mobile

Add Information URL
No Type Name URL
1 https://support.apple.com/en-us/HT201222
2 https://developer.apple.com/documentation/ios-ipados-release-notes
3 https://en.wikipedia.org/wiki/IOS_version_history

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
3511 iOS 26 26.5.1 June 1, 2026 Sept. 15, 2025 1 40 38 1
3512 iOS 18 18.7.9 May 11, 2026 Sept. 16, 2024 8 64 89 8
3513 iOS 17 17.6.1 Aug. 27, 2024 Sept. 18, 2023 9 114 178 22
3514 iOS 16 16.4.1 April 7, 2023 Sept. 12, 2022 25 244 303 56
3515 iOS 15 15.7 Sept. 12, 2022 Sept. 20, 2021 39 395 388 72
3516 iOS 14 14.8 Sept. 13, 2021 July 9, 2020 53 566 495 79
3517 iOS 13 13.7 Sept. 1, 2020 Sept. 19, 2019 65 746 579 96
3518 iOS 12 12.5.1 Jan. 11, 2021 Sept. 17, 2018 84 903 659 108
3519 iOS 11 11.4.1 July 9, 2018 Sept. 19, 2017 94 1068 728 116
3520 iOS 10 10.3.4 July 22, 2019 Sept. 13, 2016 120 1289 828 133
3521 iOS 9 9.3.6 July 22, 2019 Sept. 16, 2015 134 1415 955 149
3522 iOS 8 8.4.1 Aug. 13, 2015 Sept. 17, 2014 132 1470 1168 181
3523 iOS 7 7.0.6 Feb. 21, 2014 Sept. 18, 2013 132 1491 1231 204
3524 iOS 6 6.0.2 Dec. 18, 2012 Sept. 19, 2012 132 1517 1294 216
3525 iOS 5 5.0.1 Nov. 10, 2011 Oct. 12, 2011 132 1586 1368 228
3526 iOS 4 4.0.2 Aug. 11, 2010 June 21, 2010 133 1613 1423 235
3527 iPhone OS 3 3.0.1 July 31, 2009 June 17, 2009 133 1620 1438 238
3528 iPhone OS 2 1.1.5 July 15, 2008 July 11, 2008 134 1632 1433 236
3529 iPhone OS 1 1.0.2 Aug. 21, 2007 June 29, 2007 133 1637 1434 237
3530 iOS7.1 7.1.2 132 1484 1207 198
3531 iOS6.1 6.1.6 132 1508 1275 212
3532 iOS6.0 6.0.2 132 1517 1293 216
3533 iOS5.1 5.1.1 132 1527 1346 226
3534 iOS4.3 4.3.5 132 1605 1396 234
3535 iOS4.2 4.2.9 132 1607 1401 234
3536 iOS4.1 4.1 133 1610 1413 234
3537 iOS3.2 3.2.2 133 1614 1428 236
3538 iOS3.1 3.1.3 133 1617 1436 236
3539 iOS2.2 2.2.1 133 1628 1432 232
3540 iOS2.1 2.1.1 133 1632 1433 236
3541 iOS2.0 2.0.2 134 1632 1432 236
3542 iOS16.2 16.2 19 209 270 55
3543 iOS 27 138 1666 1480 246
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
3511 -
5.0
MEDIUM The stateless address autoconfiguration (aka SLAAC) functionality in the IPv6 networking implementation in Apple iOS before 4.3 and Apple TV before 4.2 places the MAC address into the IPv6 address, w… CWE-200
Information Exposure
CVE-2011-1418 cpe:2.3:o:apple:iphone_os:4.1:*
cpe:2.3:o:apple:iphone_os:4.0:*
cpe:2.3:o:apple:iphone_os:4.0.2:*
cpe:2.3:o:ap…
4.2 2024-11-21 10:26
2011-03-12
Show GitHub Exploit DB Packet Storm
3512 -
4.3
MEDIUM WebKit, as used in Apple Safari before 5.0.4 and iOS before 4.3, does not properly handle unspecified "cached resources," which allows remote attackers to cause a denial of service (resource unavaila… CWE-20
 Improper Input Validation 
CVE-2011-0163 cpe:2.3:o:apple:iphone_os:4.1:*
cpe:2.3:o:apple:iphone_os:4.0:*
cpe:2.3:o:apple:iphone_os:4.0.2:*
cpe:2.3:o:ap…
4.2 2024-11-21 10:23
2011-03-12
Show GitHub Exploit DB Packet Storm
3513 -
7.8
HIGH Wi-Fi in Apple iOS before 4.3 and Apple TV before 4.2 does not properly perform bounds checking for Wi-Fi frames, which allows remote attackers to cause a denial of service (device reset) via unspeci… CWE-20
 Improper Input Validation 
CVE-2011-0162 cpe:2.3:o:apple:iphone_os:4.1:*
cpe:2.3:o:apple:iphone_os:4.0:*
cpe:2.3:o:apple:iphone_os:4.0.2:*
cpe:2.3:o:ap…
4.2 2024-11-21 10:23
2011-03-12
Show GitHub Exploit DB Packet Storm
3514 -
4.3
MEDIUM WebKit, as used in Apple Safari before 5.0.4 and iOS before 4.3, does not properly handle the Attr.style accessor, which allows remote attackers to bypass the Same Origin Policy and inject Cascading … CWE-264
CWE-20
Permissions, Privileges, and Access Controls
 Improper Input Validation 
CVE-2011-0161 cpe:2.3:o:apple:iphone_os:4.1:*
cpe:2.3:o:apple:iphone_os:4.0:*
cpe:2.3:o:apple:iphone_os:4.0.2:*
cpe:2.3:o:ap…
4.2 2024-11-21 10:23
2011-03-12
Show GitHub Exploit DB Packet Storm
3515 -
5.0
MEDIUM WebKit, as used in Apple Safari before 5.0.4 and iOS before 4.3, does not properly handle redirects in conjunction with HTTP Basic Authentication, which might allow remote web servers to capture cred… CWE-20
 Improper Input Validation 
CVE-2011-0160 cpe:2.3:o:apple:iphone_os:4.1:*
cpe:2.3:o:apple:iphone_os:4.0:*
cpe:2.3:o:apple:iphone_os:4.0.2:*
cpe:2.3:o:ap…
4.2 2024-11-21 10:23
2011-03-12
Show GitHub Exploit DB Packet Storm
3516 -
5.0
MEDIUM The Safari Settings feature in Safari in Apple iOS 4.x before 4.3 does not properly implement the clearing of cookies during execution of the Safari application, which might make it easier for remote… CWE-20
 Improper Input Validation 
CVE-2011-0159 cpe:2.3:o:apple:iphone_os:4.2:*
cpe:2.3:o:apple:iphone_os:4.1:*
cpe:2.3:o:apple:iphone_os:4.0:*
2024-11-21 10:23
2011-03-12
Show GitHub Exploit DB Packet Storm
3517 -
4.3
MEDIUM MobileSafari in Apple iOS before 4.3 does not properly implement application launching through URL handlers, which allows remote attackers to cause a denial of service (persistent application crash) … CWE-20
 Improper Input Validation 
CVE-2011-0158 cpe:2.3:o:apple:iphone_os:4.1:*
cpe:2.3:o:apple:iphone_os:4.0:*
cpe:2.3:o:apple:iphone_os:4.0.2:*
cpe:2.3:o:ap…
4.2 2024-11-21 10:23
2011-03-12
Show GitHub Exploit DB Packet Storm
3518 -
7.5
HIGH WebKit, as used in Apple iOS before 4.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different v… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-0157 cpe:2.3:o:apple:iphone_os:4.1:*
cpe:2.3:o:apple:iphone_os:4.0:*
cpe:2.3:o:apple:iphone_os:4.0.2:*
cpe:2.3:o:ap…
4.2 2024-11-21 10:23
2011-03-12
Show GitHub Exploit DB Packet Storm
3519 -
6.8
MEDIUM Integer overflow in QuickLook, as used in Apple Mac OS X before 10.6.7 and MobileSafari in Apple iOS before 4.2.7 and 4.3.x before 4.3.2, allows remote attackers to execute arbitrary code or cause a … CWE-189
Numeric Errors
CVE-2011-1417 cpe:2.3:o:apple:iphone_os:4.3.1:*
cpe:2.3:o:apple:iphone_os:4.3.0:*
cpe:2.3:o:apple:iphone_os:4.2:*
cpe:2.3:o:…
4.2.5 2024-11-21 10:26
2011-03-12
Show GitHub Exploit DB Packet Storm
3520 -
6.8
MEDIUM Google Chrome before 10.0.648.127 does not properly handle attributes, which allows remote attackers to cause a denial of service (DOM tree corruption) or possibly have unspecified other impact via a… CWE-20
 Improper Input Validation 
CVE-2011-1204 cpe:2.3:o:apple:iphone_os:*:* 5.0 2024-11-21 10:25
2011-03-11
Show GitHub Exploit DB Packet Storm