NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
84265 | CVE-2017-2387 | The Apple Music (aka com.apple.android.music) application before 2.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 2.9 | Low | 2017-04-27 | 2017-04-13 | View | |
84264 | CVE-2017-2386 | An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS before 10.2 is affected. The issue involves the WebKit component. It allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted web site. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-11 | View | |
84263 | CVE-2017-2385 | An issue was discovered in certain Apple products. Safari before 10.1 is affected. The issue involves the Safari Login AutoFill component. It allows local users to obtain access to locked keychain items via unspecified vectors. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-11 | View | |
84262 | CVE-2017-2384 | An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves mishandling of deletion within the SQLite subsystem of the Safari component. It allows local users to identify the web-site visits that occurred in Private Browsing mode. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-11 | View | |
84261 | CVE-2017-2383 | An issue was discovered in certain Apple products. iCloud before 6.2 on Windows is affected. iTunes before 12.6 on Windows is affected. The issue involves cleartext client-certificate transmission in the APNs Server component. It allows man-in-the-middle attackers to track users via correlation with this certificate. | 2 | 3.5 | Low | 2017-07-18 | 2017-07-11 | View |
Page 820 of 17672, showing 5 records out of 88360 total, starting on record 4096, ending on 4100