|
270861
|
- |
|
apple
|
mac_os_x
|
Apple OS X before 10.10.5 does not properly restrict access to the Date & Time preferences pane, which allows local users to spoof the time by visiting this pane.
|
CWE-284
Improper Access Control
|
CVE-2015-3757
|
2024-11-21 11:29 |
2015-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270862
|
- |
|
apple
|
iphone_os
|
The Certificate UI in Apple iOS before 8.4.1 does not prevent X.509 certificate acceptance within the lock screen, which allows physically proximate attackers to establish arbitrary certificate trust…
|
CWE-254
7PK - Security Features
|
CVE-2015-3756
|
2024-11-21 11:29 |
2015-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270863
|
- |
|
apple
|
safari iphone_os
|
WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, allows remote attackers to spoof the user interface via a malformed URL.
|
CWE-254
7PK - Security Features
|
CVE-2015-3755
|
2024-11-21 11:29 |
2015-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270864
|
- |
|
apple
|
safari
|
The private-browsing implementation in WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8 does not prevent caching of HTTP authentication credentials, which makes it easier f…
|
CWE-200
Information Exposure
|
CVE-2015-3754
|
2024-11-21 11:29 |
2015-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270865
|
- |
|
apple
|
safari iphone_os
|
WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, does not properly perform taint checking for CANVAS elements, which allows…
|
CWE-200
Information Exposure
|
CVE-2015-3753
|
2024-11-21 11:29 |
2015-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270866
|
- |
|
apple canonical
|
safari iphone_os ubuntu_linux
|
The Content Security Policy implementation in WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, does not properly restrict c…
|
CWE-200
Information Exposure
|
CVE-2015-3752
|
2024-11-21 11:29 |
2015-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270867
|
- |
|
apple
|
safari iphone_os
|
WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, allows remote attackers to bypass a Content Security Policy protection mec…
|
CWE-254
7PK - Security Features
|
CVE-2015-3751
|
2024-11-21 11:29 |
2015-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270868
|
- |
|
apple
|
iphone_os safari
|
WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, does not enforce the HTTP Strict Transport Security (HSTS) protection mech…
|
CWE-254
7PK - Security Features
|
CVE-2015-3750
|
2024-11-21 11:29 |
2015-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270869
|
- |
|
apple canonical
|
itunes safari iphone_os ubuntu_linux
|
WebKit, as used in Apple iOS before 8.4.1 and Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, allows remote attackers to execute arbitrary code or cause a denial of service (memory corru…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-3749
|
2024-11-21 11:29 |
2015-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270870
|
- |
|
apple canonical
|
itunes safari iphone_os ubuntu_linux
|
WebKit, as used in Apple iOS before 8.4.1 and Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, allows remote attackers to execute arbitrary code or cause a denial of service (memory corru…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-3748
|
2024-11-21 11:29 |
2015-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|