Apple Icloud For Windows vulnerabilities
445 known vulnerabilities affecting apple/icloud_for_windows.
Total CVEs
445
CISA KEV
1
actively exploited
Public exploits
66
Exploited in wild
2
Severity breakdown
CRITICAL20HIGH346MEDIUM77LOW2
Vulnerabilities
Page 10 of 23
CVE-2019-8598MEDIUMCVSS 5.5≥ unspecified, < iCloud for Windows 7.122019-12-18
CVE-2019-8598 [MEDIUM] CWE-119 CVE-2019-8598: An input validation issue was addressed with improved input validation. This issue is fixed in iOS 1
An input validation issue was addressed with improved input validation. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, watchOS 5.2.1, iTunes for Windows 12.9.5, iCloud for Windows 7.12. A malicious application may be able to read restricted memory.
nvdapple
CVE-2019-8608MEDIUMCVSS 6.3≥ unspecified, < iCloud for Windows 7.122019-12-18
CVE-2019-8608 [MEDIUM] CWE-416 CVE-2019-8608: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, Safari 12.1.1, iTunes for Windows 12.9.5, iCloud for Windows 7.12. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-15903HIGHCVSS 7.5v10.92019-12-11
CVE-2019-15903 [HIGH] CVE-2019-15903: iCloud for Windows 10.9
Apple Security Update: About the security content of iCloud for Windows 10.9
Product: iCloud for Windows
Version: 10.9
CVE: CVE-2019-15903
Component: CFNetwork Proxies
Impact: An application may be able to gain elevated privileges
Description: This issue was addressed with improved checks.
apple
CVE-2019-8848HIGHCVSS 7.8v7.162019-12-11
CVE-2019-8848 [HIGH] CVE-2019-8848: iCloud for Windows 7.16
Apple Security Update: About the security content of iCloud for Windows 7.16
Product: iCloud for Windows
Version: 7.16
CVE: CVE-2019-8848
Component: CFNetwork Proxies
Impact: An application may be able to gain elevated privileges
Description: This issue was addressed with improved checks.
apple
CVE-2019-8834MEDIUMCVSS 4.3v10.92019-12-11
CVE-2019-8834 [MEDIUM] CVE-2019-8834: iCloud for Windows 10.9
Apple Security Update: About the security content of iCloud for Windows 10.9
Product: iCloud for Windows
Version: 10.9
CVE: CVE-2019-8834
Component: CFNetwork
Impact: An attacker in a privileged network position may be able to bypass HSTS for a limited number of specific top-level domains previously not in the HSTS preload list
Description: A configuration issue was addressed with additional restrictions.
apple
CVE-2019-8749CRITICALCVSS 9.8v7.142019-10-07
CVE-2019-8749 [CRITICAL] CVE-2019-8749: iCloud for Windows 7.14
Apple Security Update: About the security content of iCloud for Windows 7.14
Product: iCloud for Windows
Version: 7.14
CVE: CVE-2019-8749
Component: Foundation
Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2019-8746CRITICALCVSS 9.8v10.72019-10-07
CVE-2019-8746 [CRITICAL] CVE-2019-8746: iCloud for Windows 10.7
Apple Security Update: About the security content of iCloud for Windows 10.7
Product: iCloud for Windows
Version: 10.7
CVE: CVE-2019-8746
Component: Foundation
Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2019-8756CRITICALCVSS 9.8v10.72019-10-07
CVE-2019-8756 [CRITICAL] CVE-2019-8756: iCloud for Windows 10.7
Apple Security Update: About the security content of iCloud for Windows 10.7
Product: iCloud for Windows
Version: 10.7
CVE: CVE-2019-8756
Component: Foundation
Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2019-8825HIGHCVSS 8.8v7.142019-10-07
CVE-2019-8825 [HIGH] CVE-2019-8825: iCloud for Windows 7.14
Apple Security Update: About the security content of iCloud for Windows 7.14
Product: iCloud for Windows
Version: 7.14
CVE: CVE-2019-8825
Component: CoreMedia
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A memory corruption issue was addressed with improved state management.
apple
CVE-2019-8743HIGHCVSS 8.8v7.142019-10-07
CVE-2019-8743 [HIGH] CVE-2019-8743: iCloud for Windows 7.14
Apple Security Update: About the security content of iCloud for Windows 7.14
Product: iCloud for Windows
Version: 7.14
CVE: CVE-2019-8743
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2019-8765HIGHCVSS 8.8PoCv7.142019-10-07
CVE-2019-8765 [HIGH] CVE-2019-8765: iCloud for Windows 7.14
Apple Security Update: About the security content of iCloud for Windows 7.14
Product: iCloud for Windows
Version: 7.14
CVE: CVE-2019-8765
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2019-8764MEDIUMCVSS 6.1v7.142019-10-07
CVE-2019-8764 [MEDIUM] CVE-2019-8764: iCloud for Windows 7.14
Apple Security Update: About the security content of iCloud for Windows 7.14
Product: iCloud for Windows
Version: 7.14
CVE: CVE-2019-8764
Component: WebKit
Impact: Processing maliciously crafted web content may lead to universal cross site scripting
Description: A logic issue was addressed with improved state management.
apple
CVE-2019-13118MEDIUMCVSS 5.3v10.62019-07-23
CVE-2019-13118 [MEDIUM] CVE-2019-13118: iCloud for Windows 10.6
Apple Security Update: About the security content of iCloud for Windows 10.6
Product: iCloud for Windows
Version: 10.6
CVE: CVE-2019-13118
Component: About Apple security updates
Impact: A remote attacker may be able to view sensitive information
Description: A stack overflow was addressed with improved input validation.
apple
CVE-2019-8582MEDIUMCVSS 5.5v7.122019-05-28
CVE-2019-8582 [MEDIUM] CVE-2019-8582: iCloud for Windows 7.12
Apple Security Update: About the security content of iCloud for Windows 7.12
Product: iCloud for Windows
Version: 7.12
CVE: CVE-2019-8582
Component: CoreText
Impact: Processing a maliciously crafted font may result in the disclosure of process memory
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2019-6215HIGHCVSS 8.8PoC≥ unspecified, < iCloud for Windows 7.102019-03-05
CVE-2019-6215 [HIGH] CWE-843 CVE-2019-6215: A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 12.1.
A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 12.1.3, tvOS 12.1.2, Safari 12.0.3, iTunes 12.9.3 for Windows, iCloud for Windows 7.10. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-6212HIGHCVSS 8.8≥ unspecified, < iCloud for Windows 7.102019-03-05
CVE-2019-6212 [HIGH] CWE-787 CVE-2019-6212: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.1.3, tvOS 12.1.2, Safari 12.0.3, iTunes 12.9.3 for Windows, iCloud for Windows 7.10. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-6234HIGHCVSS 8.8≥ unspecified, < iCloud for Windows 7.102019-03-05
CVE-2019-6234 [HIGH] CWE-787 CVE-2019-6234: A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12.1.3, tvOS 12.1.2, Safari 12.0.3, iTunes 12.9.3 for Windows, iCloud for Windows 7.10. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-6233HIGHCVSS 8.8≥ unspecified, < iCloud for Windows 7.102019-03-05
CVE-2019-6233 [HIGH] CWE-787 CVE-2019-6233: A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12.1.3, tvOS 12.1.2, Safari 12.0.3, iTunes 12.9.3 for Windows, iCloud for Windows 7.10. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-6217HIGHCVSS 8.8≥ unspecified, < iCloud for Windows 7.102019-03-05
CVE-2019-6217 [HIGH] CWE-787 CVE-2019-6217: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.1.3, tvOS 12.1.2, watchOS 5.1.3, Safari 12.0.3, iTunes 12.9.3 for Windows, iCloud for Windows 7.10. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-6227HIGHCVSS 8.8≥ unspecified, < iCloud for Windows 7.102019-03-05
CVE-2019-6227 [HIGH] CWE-787 CVE-2019-6227: A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12.1.3, tvOS 12.1.2, watchOS 5.1.3, Safari 12.0.3, iTunes 12.9.3 for Windows, iCloud for Windows 7.10. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple