Vulnerabilities > Apple

DATE CVE VULNERABILITY TITLE RISK
2018-06-08 CVE-2018-4190 Insufficiently Protected Credentials vulnerability in multiple products
An issue was discovered in certain Apple products.
network
low complexity
apple canonical CWE-522
8.8
2018-06-08 CVE-2018-4188 Improper Input Validation vulnerability in Apple products
An issue was discovered in certain Apple products.
network
low complexity
apple CWE-20
6.5
2018-06-08 CVE-2018-4187 Improper Input Validation vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
network
low complexity
apple CWE-20
6.5
2018-06-08 CVE-2018-4184 Unspecified vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
network
low complexity
apple
7.5
2018-06-08 CVE-2018-4171 Information Exposure vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-200
5.5
2018-06-08 CVE-2018-4159 Information Exposure vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-200
5.5
2018-06-08 CVE-2018-4141 Information Exposure vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-200
5.5
2018-06-07 CVE-2018-12015 Link Following vulnerability in multiple products
In Perl through 5.26.2, the Archive::Tar module allows remote attackers to bypass a directory-traversal protection mechanism, and overwrite arbitrary files, via an archive file containing a symlink and a regular file with the same name.
network
low complexity
canonical debian perl archive apple netapp CWE-59
7.5
2018-05-16 CVE-2017-17689 The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. 5.9
2018-05-16 CVE-2017-17688 The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. 5.9