CVE-2015-1088
- EPSS 1.64%
- Veröffentlicht 10.04.2015 14:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
CFURL in Apple iOS before 8.3 and Apple OS X before 10.10.3 does not properly validate URLs, which allows remote attackers to execute arbitrary code via a crafted web site.
CVE-2015-1087
- EPSS 0.05%
- Veröffentlicht 10.04.2015 14:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
Directory traversal vulnerability in Backup in Apple iOS before 8.3 allows attackers to read arbitrary files via a crafted relative path.
CVE-2015-1086
- EPSS 0.06%
- Veröffentlicht 10.04.2015 14:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Audio Drivers subsystem in Apple iOS before 8.3 and Apple TV before 7.2 does not properly validate IOKit object metadata, which allows attackers to execute arbitrary code in a privileged context via a crafted app.
CVE-2015-1085
- EPSS 0.07%
- Veröffentlicht 10.04.2015 14:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
AppleKeyStore in Apple iOS before 8.3 does not properly restrict a certain passcode-confirmation interface, which makes it easier for attackers to verify correct passcode guesses via a crafted app.
- EPSS 0.43%
- Veröffentlicht 18.03.2015 22:59:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
The user interface in WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, does not display URLs consistently, which makes it easier for remote attackers to conduct phishing attacks via a crafted URL.
CVE-2015-1083
- EPSS 0.86%
- Veröffentlicht 18.03.2015 22:59:14
- Zuletzt bearbeitet 12.04.2025 10:46:40
WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnera...
CVE-2015-1082
- EPSS 0.91%
- Veröffentlicht 18.03.2015 22:59:13
- Zuletzt bearbeitet 12.04.2025 10:46:40
WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnera...
CVE-2015-1081
- EPSS 0.86%
- Veröffentlicht 18.03.2015 22:59:12
- Zuletzt bearbeitet 12.04.2025 10:46:40
WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnera...
CVE-2015-1080
- EPSS 0.91%
- Veröffentlicht 18.03.2015 22:59:11
- Zuletzt bearbeitet 12.04.2025 10:46:40
WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnera...
CVE-2015-1078
- EPSS 0.91%
- Veröffentlicht 18.03.2015 22:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnera...