|
310181
|
2.4 |
LOW
Physics
|
apple
|
iphone_os ipados
|
The issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18. An attacker with physical access may be able to access contacts from the lock screen.
|
NVD-CWE-noinfo
|
CVE-2024-44180
|
2024-09-25 04:04 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310182
|
5.5 |
MEDIUM
Local
|
apple
|
macos ipados iphone_os
|
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Ventura 13.7, iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, macOS Sonoma 14.7, macOS Sequoia 15. An app …
|
NVD-CWE-noinfo
|
CVE-2024-44184
|
2024-09-25 04:03 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310183
|
6.5 |
MEDIUM
Network
|
apple
|
macos safari
|
The issue was addressed with improved UI. This issue is fixed in Safari 18, macOS Sequoia 15. Visiting a malicious website may lead to address bar spoofing.
|
NVD-CWE-noinfo
|
CVE-2024-40866
|
2024-09-25 04:02 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310184
|
5.5 |
MEDIUM
Local
|
apple
|
macos iphone_os ipados
|
This issue was addressed with improved validation of symlinks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15. An app may be able to access sensitive user data.
|
CWE-59
Link Following
|
CVE-2024-44131
|
2024-09-25 04:01 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310185
|
4.4 |
MEDIUM
Local
|
apple
|
macos
|
This issue was addressed with improved data protection. This issue is fixed in macOS Sequoia 15. An app with root privileges may be able to access private information.
|
NVD-CWE-noinfo
|
CVE-2024-44130
|
2024-09-25 03:49 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310186
|
5.5 |
MEDIUM
Local
|
apple
|
macos
|
An issue was addressed with improved handling of temporary files. This issue is fixed in macOS Ventura 13.7, macOS Sonoma 14.7, macOS Sequoia 15. An app may be able to read sensitive location informa…
|
NVD-CWE-noinfo
|
CVE-2024-44181
|
2024-09-25 03:39 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310187
|
7.5 |
HIGH
Network
|
apple
|
macos
|
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15. A logic issue existed where a process may be able to capture screen contents without user consent.
|
NVD-CWE-noinfo
|
CVE-2024-44189
|
2024-09-25 03:33 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310188
|
2.4 |
LOW
Physics
|
apple
|
iphone_os ipad_os
|
The issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18. An attacker with physical access may be able to access contacts from the lock screen.
|
NVD-CWE-noinfo
|
CVE-2024-44139
|
2024-09-25 03:30 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310189
|
5.5 |
MEDIUM
Local
|
apple
|
macos
|
This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15. An app may be able to read sensitive location information.
|
NVD-CWE-noinfo
|
CVE-2024-44134
|
2024-09-25 03:26 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310190
|
5.5 |
MEDIUM
Local
|
apple
|
macos
|
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15. On MDM managed devices, an app may be able to bypass certain Privacy preferences.
|
NVD-CWE-noinfo
|
CVE-2024-44133
|
2024-09-25 03:24 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|