NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 9927 | CVE-2011-3246 | CFNetwork in Apple iOS before 5.0.1 and Mac OS X 10.7 before 10.7.2 does not properly parse URLs, which allows remote attackers to trigger visits to unintended web sites, and transmission of cookies to unintended web sites, via a crafted (1) http or (2) https URL. | 2 | 5 | Medium | 2017-01-07 | 2012-02-03 | View | |
| 9936 | CVE-2011-3255 | CFNetwork in Apple iOS before 5 stores AppleID credentials in an unspecified file, which makes it easier for remote attackers to obtain sensitive information via a crafted application. | 2 | 4.3 | Medium | 2017-01-07 | 2012-01-11 | View | |
| 20277 | CVE-2016-4708 | CFNetwork in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 misparses the Set-Cookie header, which allows remote attackers to obtain sensitive information via a crafted HTTP response. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 20276 | CVE-2016-4707 | CFNetwork in Apple iOS before 10 and OS X before 10.12 mishandles Local Storage deletion, which allows local users to discover the visited web sites of arbitrary users via unspecified vectors. | 2 | 2.1 | Low | 2017-01-19 | 2016-11-28 | View | |
| 27838 | CVE-2015-7094 | CFNetwork HTTPProtocol in Apple iOS before 9.2 and OS X before 10.11.2 allows man-in-the-middle attackers to bypass the HSTS protection mechanism via a crafted URL. | 2 | 2.6 | Low | 2017-01-19 | 2015-12-14 | View |
Page 15340 of 17672, showing 5 records out of 88360 total, starting on record 76696, ending on 76700