Page 424 of 3288 results (0.009 seconds)

CVSS: 8.8EPSS: 1%CPEs: 4EXPL: 0

An issue was discovered in certain Apple products. iOS before 10.2 is affected. Safari before 10.0.2 is affected. iCloud before 6.1 is affected. iTunes before 12.5.4 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en ciertos productos Apple. iOS en versiones anteriores a 10.2 está afectado. • http://www.securityfocus.com/bid/94907 http://www.securitytracker.com/id/1037459 https://security.gentoo.org/glsa/201706-15 https://support.apple.com/HT207421 https://support.apple.com/HT207422 https://support.apple.com/HT207424 https://support.apple.com/HT207427 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 5.3EPSS: 0%CPEs: 2EXPL: 0

An issue was discovered in certain Apple products. iOS before 10.2 is affected. watchOS before 3.1.1 is affected. The issue involves the "Accounts" component, which allows local users to bypass intended authorization restrictions by leveraging the mishandling of an app uninstall. Se ha descubierto un problema en ciertos productos Apple. iOS en versiones anteriores a 10.2 está afectado. watchOS en versiones anteriores a 3.1.1 está afectado. El problema involucra al componente "Accounts", que permite a usuarios locales eludir las restricciones destinadas a autorización aprovechando el manejo incorrecto de una app de desinstalación. • http://www.securityfocus.com/bid/94851 http://www.securitytracker.com/id/1037429 https://lists.apple.com/archives/security-announce/2016/Dec/msg00001.html https://support.apple.com/HT207422 https://support.apple.com/HT207487 • CWE-285: Improper Authorization •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

An issue was discovered in certain Apple products. iOS before 10.2 is affected. The issue involves the "Mail" component, which does not alert the user to an S/MIME email signature that used a revoked certificate. Se ha descubierto un problema en ciertos productos Apple. iOS en versiones anteriores a 10.2 está afectado. El problema involucra el componente "Mail", que no alerta al usuario de una firma de correo electrónico S/MIME que utiliza un certificado revocado. • http://www.securityfocus.com/bid/94850 http://www.securitytracker.com/id/1037429 https://support.apple.com/HT207422 • CWE-254: 7PK - Security Features •

CVSS: 6.8EPSS: 0%CPEs: 1EXPL: 0

An issue was discovered in certain Apple products. iOS before 10.2 is affected. The issue involves the "SpringBoard" component, which allows physically proximate attackers to bypass the passcode attempt counter and unlock a device via unspecified vectors. Se ha descubierto un problema en ciertos productos Apple. iOS en versiones anteriores a 10.2 está afectado. El problema involucra al componente "SpringBoard", que permite a atacantes próximos físicamente eludir el contador de intentos de código de acceso y desbloquear un dispositivo a través de vectores no especificados. • http://www.securityfocus.com/bid/94850 http://www.securitytracker.com/id/1037429 https://support.apple.com/HT207422 • CWE-254: 7PK - Security Features •

CVSS: 2.4EPSS: 0%CPEs: 1EXPL: 0

An issue was discovered in certain Apple products. iOS before 10.2 is affected. The issue involves the "Media Player" component, which allows physically proximate attackers to obtain sensitive photo and contact information by leveraging lockscreen access. Se ha descubierto un problema en ciertos productos Apple. iOS en versiones anteriores a 10.2 está afectado. El problema involucra al componente "Media Player" que permite a atacantes próximos físicamente obtener fotos e información de contacto sensibles aprovechando un acceso a la pantalla de bloqueo. • http://www.securityfocus.com/bid/94850 http://www.securitytracker.com/id/1037429 https://support.apple.com/HT207422 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •