NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
20304 | CVE-2016-4739 | mDNSResponder in Apple OS X before 10.12, when VMnet.framework is used, arranges for a DNS proxy to listen on all interfaces, which allows remote attackers to obtain sensitive information by sending a DNS query to an unintended interface. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
20305 | CVE-2016-4740 | Apple iOS before 10, when Handoff for Messages is used, does not ensure that a Messages signin has occurred before displaying messages, which might allow attackers to obtain sensitive information via unspecified vectors. | 2 | 1.9 | Low | 2017-01-19 | 2016-11-28 | View | |
20306 | CVE-2016-4741 | The Assets component in Apple iOS before 10 allows man-in-the-middle attackers to block software updates via vectors related to lack of an HTTPS session for retrieving updates. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
20307 | CVE-2016-4742 | NSSecureTextField in Apple OS X before 10.12 does not enable Secure Input, which allows attackers to discover credentials via a crafted app. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
82705 | CVE-2016-4743 | An issue was discovered in certain Apple products. iOS before 10.2 is affected. Safari before 10.0.2 is affected. iCloud before 6.1 is affected. iTunes before 12.5.4 is affected. The issue involves the "WebKit" component. It allows remote attackers to obtain sensitive information from process memory or cause a denial of service (memory corruption and application crash) via a crafted web site. | 2 | 5.8 | Medium | 2017-02-28 | 2017-02-21 | View |
Page 16004 of 17672, showing 5 records out of 88360 total, starting on record 80016, ending on 80020