Apple Icloud For Windows vulnerabilities
445 known vulnerabilities affecting apple/icloud_for_windows.
Total CVEs
445
CISA KEV
1
actively exploited
Public exploits
66
Exploited in wild
2
Severity breakdown
CRITICAL20HIGH346MEDIUM77LOW2
Vulnerabilities
Page 14 of 23
CVE-2018-4266MEDIUMCVSS 5.9v7.62018-07-09
CVE-2018-4266 [MEDIUM] CVE-2018-4266: iCloud for Windows 7.6
Apple Security Update: About the security content of iCloud for Windows 7.6
Product: iCloud for Windows
Version: 7.6
CVE: CVE-2018-4266
Component: WebKit
Impact: A malicious website may be able to cause a denial of service
Description: A race condition was addressed with additional validation.
apple
CVE-2018-4271MEDIUMCVSS 6.5v7.62018-07-09
CVE-2018-4271 [MEDIUM] CVE-2018-4271: iCloud for Windows 7.6
Apple Security Update: About the security content of iCloud for Windows 7.6
Product: iCloud for Windows
Version: 7.6
CVE: CVE-2018-4271
Component: WebKit
Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2018-4293MEDIUMCVSS 5.3v7.62018-07-09
CVE-2018-4293 [MEDIUM] CVE-2018-4293: iCloud for Windows 7.6
Apple Security Update: About the security content of iCloud for Windows 7.6
Product: iCloud for Windows
Version: 7.6
CVE: CVE-2018-4293
Component: CFNetwork
Impact: Cookies may unexpectedly persist in Safari
Description: A cookie management issue was addressed with improved checks.
apple
CVE-2018-4273MEDIUMCVSS 6.5v7.62018-07-09
CVE-2018-4273 [MEDIUM] CVE-2018-4273: iCloud for Windows 7.6
Apple Security Update: About the security content of iCloud for Windows 7.6
Product: iCloud for Windows
Version: 7.6
CVE: CVE-2018-4273
Component: WebKit
Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2018-4278MEDIUMCVSS 4.3v7.62018-07-09
CVE-2018-4278 [MEDIUM] CVE-2018-4278: iCloud for Windows 7.6
Apple Security Update: About the security content of iCloud for Windows 7.6
Product: iCloud for Windows
Version: 7.6
CVE: CVE-2018-4278
Component: WebKit
Impact: A malicious website may exfiltrate audio data cross-origin
Description: Sound fetched through audio elements may be exfiltrated cross-origin. This issue was addressed with improved audio taint tracking.
apple
CVE-2018-4270MEDIUMCVSS 6.5v7.62018-07-09
CVE-2018-4270 [MEDIUM] CVE-2018-4270: iCloud for Windows 7.6
Apple Security Update: About the security content of iCloud for Windows 7.6
Product: iCloud for Windows
Version: 7.6
CVE: CVE-2018-4270
Component: WebKit
Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2018-4233HIGHCVSS 8.8PoCv7.52018-06-01
CVE-2018-4233 [HIGH] CVE-2018-4233: iCloud for Windows 7.5
Apple Security Update: About the security content of iCloud for Windows 7.5
Product: iCloud for Windows
Version: 7.5
CVE: CVE-2018-4233
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2018-4190HIGHCVSS 8.8v7.52018-06-01
CVE-2018-4190 [HIGH] CVE-2018-4190: iCloud for Windows 7.5
Apple Security Update: About the security content of iCloud for Windows 7.5
Product: iCloud for Windows
Version: 7.5
CVE: CVE-2018-4190
Component: WebKit
Impact: Visiting a maliciously crafted website may leak sensitive data
Description: Credentials were unexpectedly sent when fetching CSS mask images. This was addressed by using a CORS-enabled fetch method.
apple
CVE-2018-4200HIGHCVSS 8.8PoCv7.52018-06-01
CVE-2018-4200 [HIGH] CVE-2018-4200: iCloud for Windows 7.5
Apple Security Update: About the security content of iCloud for Windows 7.5
Product: iCloud for Windows
Version: 7.5
CVE: CVE-2018-4200
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A memory corruption issue was addressed with improved state management.
apple
CVE-2018-4246HIGHCVSS 8.8v7.52018-06-01
CVE-2018-4246 [HIGH] CVE-2018-4246: iCloud for Windows 7.5
Apple Security Update: About the security content of iCloud for Windows 7.5
Product: iCloud for Windows
Version: 7.5
CVE: CVE-2018-4246
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A type confusion issue was addressed with improved memory handling.
apple
CVE-2018-4218HIGHCVSS 8.8PoCv7.52018-06-01
CVE-2018-4218 [HIGH] CVE-2018-4218: iCloud for Windows 7.5
Apple Security Update: About the security content of iCloud for Windows 7.5
Product: iCloud for Windows
Version: 7.5
CVE: CVE-2018-4218
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2018-4194HIGHCVSS 8.8v7.52018-06-01
CVE-2018-4194 [HIGH] CVE-2018-4194: iCloud for Windows 7.5
Apple Security Update: About the security content of iCloud for Windows 7.5
Product: iCloud for Windows
Version: 7.5
CVE: CVE-2018-4194
Component: CoreGraphics
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2018-4199HIGHCVSS 8.8v7.52018-06-01
CVE-2018-4199 [HIGH] CVE-2018-4199: iCloud for Windows 7.5
Apple Security Update: About the security content of iCloud for Windows 7.5
Product: iCloud for Windows
Version: 7.5
CVE: CVE-2018-4199
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2018-4201HIGHCVSS 8.8v7.52018-06-01
CVE-2018-4201 [HIGH] CVE-2018-4201: iCloud for Windows 7.5
Apple Security Update: About the security content of iCloud for Windows 7.5
Product: iCloud for Windows
Version: 7.5
CVE: CVE-2018-4201
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2018-4214HIGHCVSS 8.8v7.52018-06-01
CVE-2018-4214 [HIGH] CVE-2018-4214: iCloud for Windows 7.5
Apple Security Update: About the security content of iCloud for Windows 7.5
Product: iCloud for Windows
Version: 7.5
CVE: CVE-2018-4214
Component: WebKit
Impact: Processing maliciously crafted web content may lead to an unexpected Safari crash
Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2018-4192HIGHCVSS 7.5PoCv7.52018-06-01
CVE-2018-4192 [HIGH] CVE-2018-4192: iCloud for Windows 7.5
Apple Security Update: About the security content of iCloud for Windows 7.5
Product: iCloud for Windows
Version: 7.5
CVE: CVE-2018-4192
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A race condition was addressed with improved locking.
apple
CVE-2018-4204HIGHCVSS 8.8v7.52018-06-01
CVE-2018-4204 [HIGH] CVE-2018-4204: iCloud for Windows 7.5
Apple Security Update: About the security content of iCloud for Windows 7.5
Product: iCloud for Windows
Version: 7.5
CVE: CVE-2018-4204
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2018-4222HIGHCVSS 8.8PoCv7.52018-06-01
CVE-2018-4222 [HIGH] CVE-2018-4222: iCloud for Windows 7.5
Apple Security Update: About the security content of iCloud for Windows 7.5
Product: iCloud for Windows
Version: 7.5
CVE: CVE-2018-4222
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2018-4225MEDIUMCVSS 5.5v7.52018-06-01
CVE-2018-4225 [MEDIUM] CVE-2018-4225: iCloud for Windows 7.5
Apple Security Update: About the security content of iCloud for Windows 7.5
Product: iCloud for Windows
Version: 7.5
CVE: CVE-2018-4225
Component: Security
Impact: A local user may be able to modify the state of the Keychain
Description: An authorization issue was addressed with improved state management.
apple
CVE-2018-4226MEDIUMCVSS 5.5v7.52018-06-01
CVE-2018-4226 [MEDIUM] CVE-2018-4226: iCloud for Windows 7.5
Apple Security Update: About the security content of iCloud for Windows 7.5
Product: iCloud for Windows
Version: 7.5
CVE: CVE-2018-4226
Component: Security
Impact: A local user may be able to view sensitive user information
Description: An authorization issue was addressed with improved state management.
apple