Vulnerabilities > Apple > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-04-03 CVE-2018-4195 Improper Input Validation vulnerability in Apple Safari
An inconsistent user interface issue was addressed with improved state management.
network
low complexity
apple CWE-20
6.5
2019-04-03 CVE-2018-4178 Incorrect Permission Assignment for Critical Resource vulnerability in Apple mac OS X
A permissions issue existed in which execute permission was incorrectly granted.
local
low complexity
apple CWE-732
5.5
2019-04-03 CVE-2018-4153 Injection vulnerability in Apple mac OS X
An injection issue was addressed with improved validation.
network
high complexity
apple CWE-74
5.9
2019-03-05 CVE-2019-6231 Out-of-bounds Read vulnerability in Apple products
An out-of-bounds read was addressed with improved bounds checking.
local
low complexity
apple CWE-125
5.5
2019-03-05 CVE-2019-6229 Cross-site Scripting vulnerability in Apple products
A logic issue was addressed with improved validation.
network
low complexity
apple CWE-79
6.1
2019-03-05 CVE-2019-6228 Cross-site Scripting vulnerability in Apple Iphone OS
A cross-site scripting issue existed in Safari.
network
low complexity
apple CWE-79
6.1
2019-03-05 CVE-2019-6220 Out-of-bounds Read vulnerability in Apple mac OS X
An out-of-bounds read was addressed with improved input validation.
local
low complexity
apple CWE-125
5.5
2019-03-05 CVE-2019-6209 Out-of-bounds Read vulnerability in Apple products
An out-of-bounds read issue existed that led to the disclosure of kernel memory.
local
low complexity
apple CWE-125
5.5
2019-03-05 CVE-2019-6208 Improper Initialization vulnerability in Apple Iphone OS
A memory initialization issue was addressed with improved memory handling.
local
low complexity
apple CWE-665
5.5
2019-02-18 CVE-2019-8906 Out-of-bounds Read vulnerability in multiple products
do_core_note in readelf.c in libmagic.a in file 5.35 has an out-of-bounds read because memcpy is misused.
4.4