|
248401
|
5.5 |
MEDIUM
Local
|
apple
|
safari
|
An issue was discovered in certain Apple products. Safari before 10.1 is affected. The issue involves the "Safari Login AutoFill" component. It allows local users to obtain access to locked keychain …
|
CWE-200
Information Exposure
|
CVE-2017-2385
|
2024-11-21 12:23 |
2017-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248402
|
3.3 |
LOW
Local
|
apple
|
iphone_os
|
An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves mishandling of deletion within the SQLite subsystem of the "Safari" component. It allows local users…
|
CWE-200
Information Exposure
|
CVE-2017-2384
|
2024-11-21 12:23 |
2017-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248403
|
3.1 |
LOW
Network
|
apple
|
icloud itunes
|
An issue was discovered in certain Apple products. iCloud before 6.2 on Windows is affected. iTunes before 12.6 on Windows is affected. The issue involves cleartext client-certificate transmission in…
|
NVD-CWE-Other
|
CVE-2017-2383
|
2024-11-21 12:23 |
2017-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248404
|
7.5 |
HIGH
Network
|
apple
|
mac_os_server
|
An issue was discovered in certain Apple products. macOS Server before 5.3 is affected. The issue involves the "Wiki Server" component. It allows remote attackers to enumerate user accounts via unspe…
|
CWE-200
Information Exposure
|
CVE-2017-2382
|
2024-11-21 12:23 |
2017-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248405
|
8.8 |
HIGH
Network
|
apple
|
mac_os_x
|
An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the "sudo" component. It allows remote authenticated users to gain privileges by leveraging mem…
|
NVD-CWE-noinfo
|
CVE-2017-2381
|
2024-11-21 12:23 |
2017-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248406
|
7.5 |
HIGH
Network
|
apple
|
iphone_os
|
An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves the Simple Certificate Enrollment Protocol (SCEP) implementation in the "Profiles" component. It …
|
CWE-326
Inadequate Encryption Strength
|
CVE-2017-2380
|
2024-11-21 12:23 |
2017-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248407
|
7.8 |
HIGH
Local
|
apple
|
watchos mac_os_x iphone_os tvos
|
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. watchOS before 3.2 is affected. The issue involves the …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-2379
|
2024-11-21 12:23 |
2017-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248408
|
8.8 |
HIGH
Network
|
apple
|
safari iphone_os
|
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. The issue involves bookmark creation in the "WebKit" component. It allows remote attack…
|
CWE-20
Improper Input Validation
|
CVE-2017-2378
|
2024-11-21 12:23 |
2017-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248409
|
7.5 |
HIGH
Network
|
apple
|
safari iphone_os
|
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. The issue involves the "WebKit Web Inspector" component. It allows attackers to cause a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-2377
|
2024-11-21 12:23 |
2017-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248410
|
7.5 |
HIGH
Network
|
apple
|
safari iphone_os
|
An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. The issue involves the "Safari" component. It allows remote attackers to spoof the addr…
|
NVD-CWE-noinfo
|
CVE-2017-2376
|
2024-11-21 12:23 |
2017-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|