|
267201
|
7.5 |
HIGH
Network
|
apple
|
iphone_os
|
The Profiles component in Apple iOS before 9.3 does not properly validate certificates, which allows attackers to spoof an MDM profile trust relationship via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2016-1766
|
2024-11-21 11:47 |
2016-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267202
|
7.8 |
HIGH
Local
|
apple
|
xcode
|
otool in Apple Xcode before 7.3 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via unspecified vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1765
|
2024-11-21 11:47 |
2016-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267203
|
4.3 |
MEDIUM
Network
|
apple
|
mac_os_x
|
The Content Security Policy (CSP) implementation in Messages in Apple OS X before 10.11.4 allows remote attackers to obtain sensitive information via a javascript: URL.
|
CWE-200
Information Exposure
|
CVE-2016-1764
|
2024-11-21 11:47 |
2016-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267204
|
3.5 |
LOW
Network
|
apple
|
iphone_os
|
Messages in Apple iOS before 9.3 does not ensure that an auto-fill action applies to the intended message thread, which allows remote authenticated users to obtain sensitive information by providing …
|
CWE-20
Improper Input Validation
|
CVE-2016-1763
|
2024-11-21 11:47 |
2016-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267205
|
8.1 |
HIGH
Network
|
apple debian canonical xmlsoft redhat mcafee
|
watchos iphone_os mac_os_x tvos safari debian_linux ubuntu_linux libxml2 enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_…
|
The xmlNextChar function in libxml2 before 2.9.4 allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted XML document.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1762
|
2024-11-21 11:47 |
2016-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267206
|
9.8 |
CRITICAL
Network
|
apple
|
watchos iphone_os mac_os_x
|
libxml2 in Apple iOS before 9.3, OS X before 10.11.4, and watchOS before 2.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted XML docum…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1761
|
2024-11-21 11:47 |
2016-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267207
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x
|
The kernel in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1759
|
2024-11-21 11:47 |
2016-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267208
|
3.3 |
LOW
Local
|
apple
|
iphone_os mac_os_x
|
The kernel in Apple iOS before 9.3 and OS X before 10.11.4 allows attackers to obtain sensitive memory-layout information or cause a denial of service (out-of-bounds read) via a crafted app.
|
CWE-119 CWE-200
Incorrect Access of Indexable Resource ('Range Error') Information Exposure
|
CVE-2016-1758
|
2024-11-21 11:47 |
2016-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267209
|
7.0 |
HIGH
Local
|
apple
|
iphone_os mac_os_x
|
Race condition in the kernel in Apple iOS before 9.3 and OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context via a crafted app.
|
CWE-362
Race Condition
|
CVE-2016-1757
|
2024-11-21 11:47 |
2016-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267210
|
7.8 |
HIGH
Local
|
apple
|
iphone_os mac_os_x
|
The kernel in Apple iOS before 9.3 and OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL pointer dereference) via a crafted app.
|
NVD-CWE-Other
|
CVE-2016-1756
|
2024-11-21 11:47 |
2016-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|