← Back

Apple

apple

8,695 CVEs • 196 products

Products (196)

Click to collapse
Toggle
Iphone Os
iphone_os
Mac Os X
mac_os_x
Macos
macos
Tvos
tvos
Ipados
ipados
Watchos
watchos
Safari
safari
Itunes
itunes
Icloud
icloud
Visionos
visionos
Webkit
webkit
Quicktime
quicktime
Xcode
xcode
Ipad Os
ipad_os
Cups
cups
Apple Tv
apple_tv
Ipod Touch
ipod_touch
Os X Server
os_x_server
Swiftnio
swiftnio
Iphone
iphone
Garageband
garageband
Ichat
ichat
Imageio
imageio
Music
music
Keynote
keynote
Pages
pages
Tv Os
tv_os
Mail
mail
Iphoto
iphoto
Cfnetwork
cfnetwork
Terminal
terminal
Afp Server
afp_server
Time Capsule
time_capsule
Numbers
numbers
Iwork
iwork
Swift
swift
Webobjects
webobjects
Ical
ical
Webcore
webcore
Mdnsresponder
mdnsresponder
Coregraphics
coregraphics
Bonjour
bonjour
Watch Os
watch_os
Logic Pro X
logic_pro_x
Mac Os
mac_os
Appleshare
appleshare
Applescript
applescript
Xsan
xsan
Installer
installer
Imovie
imovie
A Ux
a_ux
Carboncore
carboncore
Java 1.5
java_1.5
Java 1.6
java_1.6
Ipad2
ipad2
Ichat Server
ichat_server
Boot Camp
boot_camp
Apple Support
apple_support
Shortcuts
shortcuts
Shazam
shazam
Files
files
Container
container
Claris Emailer
claris_emailer
802.11n
Ichat Av
ichat_av
Airport Card
airport_card
Weblog Server
weblog_server
Textedit
textedit
Preview
preview
Server Manager
server_manager
Pdfkit
pdfkit

CVEs (8,695)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
3Apple
LinuxMicrosoft
6Linux Kernel
MacosWindows 2000+3 more
Apr 16, 2026
Jun 1, 2000
N/A· v4
N/A· v3
10.0 HIGH· v2
A system does not present an appropriate legal message or warning to a user who is accessing it.
1Apple
1Appleshare
Apr 16, 2026
May 2, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
AppleShare IP 6.1 and later allows a remote attacker to read potentially sensitive information via an invalid range request to the web server.
1Apple
1Webobjects
Apr 16, 2026
Apr 4, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Buffer overflow in WebObjects.exe in the WebObjects Developer 4.5 package allows remote attackers to cause a denial of service via an HTTP request with long headers such as Accept.
4Apple
BsdSgi+1 more
4A Ux
BsdIrix+1 more
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
2.1 LOW· v2
lpr on SunOS 4.1.1, BSD 4.3, A/UX 2.0.1, and other BSD-based operating systems allows local users to create or overwrite arbitrary files via a symlink attack that is triggered after invoking lpr 1000 times.
1Apple
1Macos
Apr 16, 2026
Dec 28, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Macintosh systems generate large ICMP datagrams in response to malformed datagrams, allowing them to be used as amplifiers in a flood attack.
1Apple
1Macos
Apr 16, 2026
Nov 1, 1999
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Idle locking function in MacOS 9 allows local attackers to bypass the password protection of idled sessions via the programmer's switch or CMD-PWR keyboard sequence, which brings up a debugger that the attacker can use t...Show more
Idle locking function in MacOS 9 allows local attackers to bypass the password protection of idled sessions via the programmer's switch or CMD-PWR keyboard sequence, which brings up a debugger that the attacker can use to disable the lock.Show less
1Apple
1Macos
Apr 16, 2026
Oct 26, 1999
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Idle locking function in MacOS 9 allows local users to bypass the password protection of idled sessions by selecting the "Log Out" option and selecting a "Cancel" option in the dialog box for an application that attempts...Show more
Idle locking function in MacOS 9 allows local users to bypass the password protection of idled sessions by selecting the "Log Out" option and selecting a "Cancel" option in the dialog box for an application that attempts to verify that the user wants to log out, which returns the attacker into the locked session.Show less
1Apple
1Macos
Apr 16, 2026
Jul 10, 1999
N/A· v4
N/A· v3
4.6 MEDIUM· v2
MacOS uses weak encryption for passwords that are stored in the Users & Groups Data File.
2Apache
Apple
2Http Server
Macos
Apr 16, 2026
Jun 3, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
A possible interaction between Apple MacOS X release 1.0 and Apache HTTP server allows remote attackers to cause a denial of service (crash) via a flood of HTTP GET requests to CGI programs, which generates a large numbe...Show more
A possible interaction between Apple MacOS X release 1.0 and Apache HTTP server allows remote attackers to cause a denial of service (crash) via a flood of HTTP GET requests to CGI programs, which generates a large number of processes.Show less
1Apple
1Macos
Apr 16, 2026
May 21, 1999
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Control Panel "Password Security" option for Apple Powerbooks allows attackers with physical access to the machine to bypass the security by booting it with an emergency startup disk and using a disk editor to modify the...Show more
Control Panel "Password Security" option for Apple Powerbooks allows attackers with physical access to the machine to bypass the security by booting it with an emergency startup disk and using a disk editor to modify the on/off toggle or password in the aaaaaaaAPWD file, which is normally inaccessible.Show less
1Apple
1Ichat Server
Apr 16, 2026
Sep 9, 1998
N/A· v4
N/A· v3
5.0 MEDIUM· v2
iChat ROOMS Webserver allows remote attackers to read arbitrary files via a .. (dot dot) attack.
1Apple
1Appleshare Mail Server
Apr 16, 2026
Apr 8, 1998
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Buffer overflow in Apple AppleShare Mail Server 5.0.3 on MacOS 8.1 and earlier allows a remote attacker to cause a denial of service (crash) via a long HELO command.
3Apple
PmailSeattlelab
3Appleshare
Mercury Mail ServerSlmail
Apr 16, 2026
Apr 1, 1998
N/A· v4
N/A· v3
10.0 HIGH· v2
Buffer overflow in SMTP HELO command in Sendmail allows a remote attacker to hide activities.
11Apple
CiscoHp+8 more
14Aix
BsdosHp Ux+11 more
May 28, 2026
Aug 1, 1997
N/A· v4
4.0 MEDIUM· v3
2.1 LOW· v2
ICMP information such as (1) netmask and (2) timestamp is allowed from arbitrary hosts.
7Apple
DigitalFreebsd+4 more
9A Ux
AixAsl Ux 4800+6 more
Apr 16, 2026
Jun 26, 1996
N/A· v4
N/A· v3
7.2 HIGH· v2
The suidperl and sperl program do not give up root privileges when changing UIDs back to the original users, allowing root access.