Vulnerabilities > Apple > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-06-08 CVE-2018-4190 Insufficiently Protected Credentials vulnerability in Apple products
An issue was discovered in certain Apple products.
4.3
2018-06-08 CVE-2018-4188 Improper Input Validation vulnerability in Apple products
An issue was discovered in certain Apple products.
4.3
2018-06-08 CVE-2018-4187 Improper Input Validation vulnerability in Apple Iphone OS and mac OS X
An issue was discovered in certain Apple products.
network
apple CWE-20
4.3
2018-06-08 CVE-2018-4184 Unspecified vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
network
low complexity
apple
5.0
2018-06-08 CVE-2018-4159 Information Exposure vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
network
apple CWE-200
4.3
2018-06-08 CVE-2018-4141 Information Exposure vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
network
apple CWE-200
4.3
2018-06-07 CVE-2018-12015 Link Following vulnerability in multiple products
In Perl through 5.26.2, the Archive::Tar module allows remote attackers to bypass a directory-traversal protection mechanism, and overwrite arbitrary files, via an archive file containing a symlink and a regular file with the same name.
network
low complexity
canonical debian perl archive apple netapp CWE-59
6.4
2018-05-21 CVE-2018-7268 Information Exposure vulnerability in Magnicomp Sysinfo 10H62
MagniComp SysInfo before 10-H81, as shipped with BMC BladeLogic Automation and other products, contains an information exposure vulnerability in which a local unprivileged user is able to read any root (uid 0) owned file on the system, regardless of the file permissions.
local
low complexity
magnicomp apple linux CWE-200
4.9
2018-05-19 CVE-2018-4927 Untrusted Search Path vulnerability in Adobe Indesign
Adobe InDesign versions 13.0 and below have an exploitable Untrusted Search Path vulnerability.
6.8
2018-05-19 CVE-2018-4926 Out-of-bounds Write vulnerability in Adobe Digital Editions
Adobe Digital Editions versions 4.5.7 and below have an exploitable Stack Overflow vulnerability.
4.3