Vulnerabilities > Apple > Safari > 7.1.8

DATE CVE VULNERABILITY TITLE RISK
2015-09-18 CVE-2015-5788 Information Exposure vulnerability in Apple Iphone OS and Safari
The WebKit Canvas implementation in Apple iOS before 9 allows remote attackers to bypass the Same Origin Policy and obtain sensitive image information via vectors involving a CANVAS element.
network
apple CWE-200
4.3
2015-09-18 CVE-2015-5767 Improper Input Validation vulnerability in Apple Iphone OS and Safari
The user interface in Safari in Apple iOS before 9 allows remote attackers to spoof URLs via unspecified vectors, a different vulnerability than CVE-2015-5764 and CVE-2015-5765.
network
apple CWE-20
4.3
2015-09-18 CVE-2015-5765 Improper Input Validation vulnerability in Apple Iphone OS and Safari
The user interface in Safari in Apple iOS before 9 allows remote attackers to spoof URLs via unspecified vectors, a different vulnerability than CVE-2015-5764 and CVE-2015-5767.
network
apple CWE-20
4.3
2015-09-18 CVE-2015-5764 Improper Input Validation vulnerability in Apple Iphone OS and Safari
The user interface in Safari in Apple iOS before 9 allows remote attackers to spoof URLs via unspecified vectors, a different vulnerability than CVE-2015-5765 and CVE-2015-5767.
network
apple CWE-20
4.3
2015-09-18 CVE-2015-3801 Permissions, Privileges, and Access Controls vulnerability in Apple Iphone OS and Safari
The document.cookie API implementation in the CFNetwork Cookies subsystem in WebKit in Apple iOS before 9 allows remote attackers to bypass an intended single-cookie restriction via unspecified vectors.
network
low complexity
apple CWE-264
5.0
2015-08-17 CVE-2015-5748 Code vulnerability in Apple Iphone OS, mac OS X and Safari
The kernel in Apple OS X before 10.10.5 does not properly mount HFS volumes, which allows local users to cause a denial of service via a crafted volume.
local
low complexity
apple CWE-17
2.1