Vulnerabilities > Apple > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-01-09 CVE-2019-20372 HTTP Request Smuggling vulnerability in multiple products
NGINX before 1.17.7, with certain error_page configurations, allows HTTP request smuggling, as demonstrated by the ability of an attacker to read unauthorized web pages in environments where NGINX is being fronted by a load balancer.
network
low complexity
f5 apple canonical opensuse netapp CWE-444
5.3
2019-12-18 CVE-2019-8817 Improper Input Validation vulnerability in Apple mac OS X
A validation issue was addressed with improved input sanitization.
local
low complexity
apple CWE-20
5.5
2019-12-18 CVE-2019-8813 Cross-site Scripting vulnerability in multiple products
A logic issue was addressed with improved state management.
network
low complexity
apple webkitgtk CWE-79
6.1
2019-12-18 CVE-2019-8804 Improper Authentication vulnerability in Apple Iphone OS
An inconsistency in Wi-Fi network configuration settings was addressed.
low complexity
apple CWE-287
5.7
2019-12-18 CVE-2019-8798 Out-of-bounds Write vulnerability in Apple products
A memory corruption issue was addressed with improved memory handling.
local
low complexity
apple CWE-787
5.5
2019-12-18 CVE-2019-8794 Improper Input Validation vulnerability in Apple products
A validation issue was addressed with improved input sanitization.
local
low complexity
apple CWE-20
5.5
2019-12-18 CVE-2019-8793 Unspecified vulnerability in Apple Iphone OS
A consistency issue existed in deciding when to show the screen recording indicator.
local
low complexity
apple
5.5
2019-12-18 CVE-2019-8791 Open Redirect vulnerability in Apple Shazam
An issue existed in the parsing of URL schemes.
network
low complexity
apple CWE-601
6.1
2019-12-18 CVE-2019-8789 Link Following vulnerability in Apple Iphone OS
A validation issue existed in the handling of symlinks.
local
low complexity
apple CWE-59
5.5
2019-12-18 CVE-2019-8770 Unspecified vulnerability in Apple mac OS X
The issue was addressed with improved permissions logic.
local
low complexity
apple
5.5