Apple iTunes Multiple Vulnerabilities
Last Update Date:
28 Jan 2019 10:17
Release Date:
28 Jan 2019
5042
Views
RISK: Medium Risk
TYPE: Clients - Productivity Products
Multiple vulnerabilities have been identified in Apple iTunes. A remote user can exploit these vulnerabilities to trigger cross site scripting, denial of service, elevation of privilege, remote code execution and sensitive information disclosure on the targeted system.
Impact
- Cross-Site Scripting
- Denial of Service
- Elevation of Privilege
- Remote Code Execution
- Security Restriction Bypass
- Information Disclosure
System / Technologies affected
- iTunes 12.9.3 for Windows
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Update to the software via "software update".
Vulnerability Identifier
- CVE-2018-20346
- CVE-2018-20505
- CVE-2018-20506
- CVE-2019-6212
- CVE-2019-6215
- CVE-2019-6216
- CVE-2019-6217
- CVE-2019-6221
- CVE-2019-6226
- CVE-2019-6227
- CVE-2019-6229
- CVE-2019-6233
- CVE-2019-6234
- CVE-2019-6235
Source
Related Link
Share with