Vulnerabilities > Apple > Iphone OS > 13.2.3

DATE CVE VULNERABILITY TITLE RISK
2019-12-18 CVE-2019-8731 Incorrect Default Permissions vulnerability in Apple Iphone OS
A permissions issue existed in which execute permission was incorrectly granted.
local
low complexity
apple CWE-276
5.5
2019-12-18 CVE-2019-8727 Unspecified vulnerability in Apple Iphone OS
A logic issue was addressed with improved state management.
network
low complexity
apple
4.3
2019-12-18 CVE-2019-8711 Improper Input Validation vulnerability in Apple Iphone OS
A logic issue existed with the display of notification previews.
network
low complexity
apple CWE-20
5.3
2019-12-18 CVE-2019-8704 Improper Authentication vulnerability in Apple Tvos
An authentication issue was addressed with improved state management.
local
low complexity
apple CWE-287
5.5
2019-12-18 CVE-2019-8674 Cross-site Scripting vulnerability in multiple products
A logic issue was addressed with improved state management.
network
low complexity
apple webkitgtk CWE-79
6.1
2019-12-11 CVE-2019-14899 A vulnerability was discovered in Linux, FreeBSD, OpenBSD, MacOS, iOS, and Android that allows a malicious access point, or an adjacent user, to determine if a connected user is using a VPN, make positive inferences about the websites they are visiting, and determine the correct sequence and acknowledgement numbers in use, allowing the bad actor to inject data into the TCP stream.
low complexity
freebsd linux openbsd apple
7.4