cbcvebase.
CVE-2012-3687
published 2012-09-13

CVE-2012-3687: WebKit, as used in Apple iTunes before 10.7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application…

PriorityP336critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
3.40%
87.5th percentile
WebKit, as used in Apple iTunes before 10.7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-09-12-1.

Affected

81 ranges· showing 25
VendorProductVersion rangeFixed in
appleiphone_os<= 6.0.2
appleiphone_os
appleiphone_os
appleitunes<= 10.6.3
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes

CVSS provenance

nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv9.3CRITICAL
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.