Vulnerabilities > Apple > Iphone OS > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-11-15 CVE-2018-0691 Improper Certificate Validation vulnerability in multiple products
Multiple +Message Apps (Softbank +Message App for Android prior to version 10.1.7, Softbank +Message App for iOS prior to version 1.1.23, NTT DOCOMO +Message App for Android prior to version 42.40.2800, NTT DOCOMO +Message App for iOS prior to version 1.1.23, KDDI +Message App for Android prior to version 1.0.6, and KDDI +Message App for iOS prior to version 1.1.23) do not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
4.3
2018-08-07 CVE-2018-5383 Improper Verification of Cryptographic Signature vulnerability in multiple products
Bluetooth firmware or operating system software drivers in macOS versions before 10.13, High Sierra and iOS versions before 11.4, and Android versions before the 2018-06-05 patch may not sufficiently validate elliptic curve parameters used to generate public keys during a Diffie-Hellman key exchange, which may allow a remote attacker to obtain the encryption key used by the device.
4.3
2018-06-08 CVE-2018-4250 Improper Input Validation vulnerability in Apple Iphone OS
An issue was discovered in certain Apple products.
network
apple CWE-20
4.3
2018-06-08 CVE-2018-4247 Improper Input Validation vulnerability in Apple Iphone OS and Safari
An issue was discovered in certain Apple products.
network
apple CWE-20
4.3
2018-06-08 CVE-2018-4246 Incorrect Type Conversion or Cast vulnerability in Apple products
An issue was discovered in certain Apple products.
6.8
2018-06-08 CVE-2018-4240 Improper Input Validation vulnerability in Apple products
An issue was discovered in certain Apple products.
network
apple CWE-20
4.3
2018-06-08 CVE-2018-4237 Unspecified vulnerability in Apple products
An issue was discovered in certain Apple products.
network
apple
6.8
2018-06-08 CVE-2018-4232 Unspecified vulnerability in Apple products
An issue was discovered in certain Apple products.
4.3
2018-06-08 CVE-2018-4227 Cleartext Transmission of Sensitive Information vulnerability in Apple Iphone OS and mac OS X
An issue was discovered in certain Apple products.
network
low complexity
apple CWE-319
5.0
2018-06-08 CVE-2018-4222 Out-of-bounds Read vulnerability in Apple products
An issue was discovered in certain Apple products.
6.8