CVE-2012-3732
- EPSS 0.59%
- Veröffentlicht 20.09.2012 21:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mail in Apple iOS before 6 uses an S/MIME message's From address as the displayed sender address, which allows remote attackers to spoof signed content via an e-mail message in which the From field does not match the signer's identity.
CVE-2012-3733
- EPSS 0.35%
- Veröffentlicht 20.09.2012 21:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Messages in Apple iOS before 6, when multiple iMessage e-mail addresses are configured, does not ensure that a reply's sender address matches the recipient address of the original message, which allows remote attackers to obtain potentially sensitive...
CVE-2012-3734
- EPSS 0.04%
- Veröffentlicht 20.09.2012 21:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Office Viewer in Apple iOS before 6 writes cleartext document data to a temporary file, which might allow local users to bypass a document's intended (1) Data Protection level or (2) encryption state by reading the temporary content.
CVE-2012-3735
- EPSS 0.08%
- Veröffentlicht 20.09.2012 21:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Passcode Lock implementation in Apple iOS before 6 does not properly interact with the "Slide to Power Off" feature, which allows physically proximate attackers to see the most recently used third-party app by watching the device's screen.
CVE-2012-3736
- EPSS 0.05%
- Veröffentlicht 20.09.2012 21:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Passcode Lock implementation in Apple iOS before 6 allows physically proximate attackers to bypass an intended passcode requirement via vectors related to ending a FaceTime call.
CVE-2012-3687
- EPSS 1.66%
- Veröffentlicht 13.09.2012 10:30:20
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit, as used in Apple iTunes before 10.7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in A...
CVE-2012-3701
- EPSS 1.66%
- Veröffentlicht 13.09.2012 10:30:20
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit, as used in Apple iTunes before 10.7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in A...
CVE-2012-3606
- EPSS 1.66%
- Veröffentlicht 13.09.2012 10:30:19
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit, as used in Apple iTunes before 10.7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in A...
CVE-2012-3607
- EPSS 1.66%
- Veröffentlicht 13.09.2012 10:30:19
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit, as used in Apple iTunes before 10.7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in A...
CVE-2012-3621
- EPSS 1.66%
- Veröffentlicht 13.09.2012 10:30:19
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit, as used in Apple iTunes before 10.7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in A...