72 exploited vulnerabilities in Icloud
- Vendors
- Almalinux, Centos, Red Hat, Rocky Linux, Apple, Suse
- With known exploits
- 72
- Affected Apple Icloud versions
- < 7.12, 7.16, 10.9, 10.4, 7.11, 7.13, 10.6, 6.2.2, 12.3, 7.20, 11.3
- Affected Apple Itunes versions
- < 12.9.5, 12.10.3, 12.9.4, 12.9.6, 12.6.2, 12.11.3, 12.10.8
- Affected Apple Safari versions
- < 12.1.1, 13.0.4, 12.1, 12.1.2, 14.1, 13.1.2, 12.0.2, 12, 11.1.1, 11.1
- Affected Apple Iphone Os versions
- < 12.3, 13.3, 12.2, 12.4, 14.5, 13.6, 12.1.1, 12.0, 11.4, 11.3.1, 11.3
- Affected Apple Mac Os X versions
- < 10.14.5, 10.14.6
- Affected Apple Tvos versions
- < 12.3, 13.3, 12.2, 12.4, 14.5, 13.4.8, 12.1.1, 12, 11.4, 11.3
- Affected Apple Watchos versions
- < 5.2.1, 6.1.1, 5.2, 5.3, 7.4, 6.2.8, 5.1.2, 4.3.1, 4.3
- Affected Apple Ipados versions
- < 13.3, 14.5, 13.6
Vulnerabilities with exploits
Highest CVSS first β 31 of these already have exploit code on Sploitus
CVE-2019-8601 1 exploit
CVE-2019-8583
CVE-2019-8571
CVE-2020-9915
CVE-2019-8846
CVE-2019-8844
CVE-2019-8835
CVE-2019-8623 3 exploits
Fuzzilli - A JavaScript Engine FuzzermacOS < 10.14.5 / iOS < 12.3 JavaScriptCore - Loop-Invariant Code Motion (LICM) in DFG JIT
CVE-2019-8622 4 exploits
CVE-2019-8619
CVE-2019-8611 3 exploits
Fuzzilli - A JavaScript Engine FuzzermacOS < 10.14.5 / iOS < 12.3 JavaScriptCore - AIR Optimization Incorrectly Removes Assignment
CVE-2019-8610
CVE-2019-8609
CVE-2019-8563
CVE-2019-8535
CVE-2019-8558 3 exploits
Fuzzilli - A JavaScript Engine FuzzerWebKit JavaScriptCore - CodeBlock Dangling Watchpoints Use-After-Free Exploit
CVE-2019-8673
CVE-2019-8672 3 exploits
Fuzzilli - A JavaScript Engine FuzzermacOS / iOS JavaScriptCore - JSValue Use-After-Free in ValueProfiles Exploit
CVE-2019-8666
CVE-2019-8644
CVE-2019-8689 3 exploits
Webkit JSC: JIT - Uninitialized Variable Access in ArgumentsEliminationPhase::transform ExploitWebkit JSC: JIT - Uninitialized Variable Access in ArgumentsEliminationPhase::transform
CVE-2017-7041 4 exploits
WebKit: use-after-free in WebCore::Node::getFlag(CVE-2017-7041)WebKit WebCore::Node::getFlag Use-After-Free
CVE-2017-7042 4 exploits
WebKit: use-after-free in WebCore::InputType::element(CVE-2017-7042)WebKit WebCore::InputType::element Use-After-Free
CVE-2021-1825
CVE-2020-9893
CVE-2020-9807
CVE-2018-4442 3 exploits
WebKit JSC JIT - GetIndexedPropertyStorage Use-After-Free ExploitWebKit JSC JIT - GetIndexedPropertyStorage Use-After-Free
CVE-2018-4438 3 exploits
WebKit JIT - Int32/Double Arrays can have Proxy Objects in the Prototype Chains ExploitWebKit JIT - Int32/Double Arrays can have Proxy Objects in the Prototype Chains
CVE-2019-8597
CVE-2019-8559
CVE-2018-4328 3 exploits
WebKit - WebCore::InlineTextBox::paint Out-of-Bounds Read ExploitWebKit - 'WebCore::InlineTextBox::paint' Out-of-Bounds Read
CVE-2018-4323 3 exploits
WebKit - WebCore::RenderMultiColumnSet::updateMinimumColumnHeight Use-After-Free ExploitWebKit - 'WebCore::RenderMultiColumnSet::updateMinimumColumnHeight' Use-After-Free
CVE-2018-4233 11 exploits
Exploit for Improper Restriction of Operations within the Bounds of a Memory Buffer in Apple SafariExploit for CVE-2016-2434
CVE-2018-4222 3 exploits
CVE-2018-4218 3 exploits
WebKit - Use-After-Free when Resuming Generator ExploitWebKit - Use-After-Free when Resuming Generator
CVE-2018-4204 1 exploit
CVE-2018-4200 4 exploits
WebKitGTK+ Memory Corruption / Code Execution VulnerabilityWebKit WebCore::jsElementScrollHeightGette Use-After-Free Exploit
CVE-2018-4197 3 exploits
WebKit - WebCore::RenderTreeBuilder::removeAnonymousWrappersForInlineChildrenIfNeededWebKit - 'WebCore::RenderTreeBuilder::removeAnonymousWrappersForInlineChildrenIfNeeded' Use-After-Free
CVE-2018-4162 3 exploits
CVE-2018-4121 5 exploits
WebKitGTK+ Memory Corruption / Code Execution VulnerabilityExploit for Improper Restriction of Operations within the Bounds of a Memory Buffer in Apple Safari
CVE-2017-7117 7 exploits
PS4-12.00-JailbreakExploit for Improper Restriction of Operations within the Bounds of a Memory Buffer in Apple Safari
CVE-2017-7092 1 exploit
CVE-2017-7061 4 exploits
WebKit: JSC: Incorrect optimization in BytecodeGenerator::emitGetByVal(CVE-2017-7061)WebKit JSC BytecodeGenerator::emitGetByVal Incorrect Optimization
CVE-2017-7056 4 exploits
WebKit: JSC: Incorrect LoadVarargs handling in ArgumentsEliminationPhase::transform(CVE-2017-7056)WebKit JSC ArgumentsEliminationPhase::transform Incorrect LoadVarargs Handling Vulnerability
CVE-2017-7048 4 exploits
WebKit: use-after-free in WebCore::AccessibilityNodeObject::textUnderElement(CVE-2017-7048)WebKit WebCore::AccessibilityNodeObject::textUnderElement Use-After-Free
CVE-2017-7046 4 exploits
WebKit: use-after-free in WebCore::RenderObject with accessibility enabled(CVE-2017-7046)WebKit WebCore::RenderObject Use-After-Free
CVE-2017-7043 4 exploits
WebKit: use-after-free in WebCore::AccessibilityRenderObject::handleAriaExpandedChanged(CVE-2017-7043)WebKit WebCore::AccessibilityRenderObject::handleAriaExpandedChanged Use-After-Free
CVE-2017-7040 4 exploits
WebKit: use-after-free in WebCore::getCachedWrapper(CVE-2017-7040)WebKit WebCore::getCachedWrapper Use-After-Free
CVE-2017-7039 4 exploits
WebKit: use-after-free in WebCore::Node::nextSibling(CVE-2017-7039)WebKit WebCore::Node::nextSibling Use-After-Free
CVE-2017-7037 4 exploits