cbcvebase.

Apple Icloud For Windows vulnerabilities

445 known vulnerabilities affecting apple/icloud_for_windows.

Total CVEs
445
CISA KEV
1
actively exploited
Public exploits
67
Exploited in wild
10
Severity breakdown
CRITICAL20HIGH346MEDIUM77LOW2

Vulnerabilities

Page 23 of 23
CVE-2018-4440P4MEDIUMCVSS 4.3v7.92018-12-05
CVE-2018-4440 [MEDIUM] CVE-2018-4440: iCloud for Windows 7.9 Apple Security Update: About the security content of iCloud for Windows 7.9 Product: iCloud for Windows Version: 7.9 CVE: CVE-2018-4440 Component: Safari Impact: Visiting a malicious website may lead to address bar spoofing Description: A logic issue was addressed with improved state management.
apple
CVE-2019-8827P4MEDIUMCVSS 4.3≥ unspecified, < 7.15≥ unspecified, < 10.92020-10-27
CVE-2019-8827 [MEDIUM] CVE-2019-8827: The HTTP referrer header may be used to leak browsing history. The issue was resolved by downgrading The HTTP referrer header may be used to leak browsing history. The issue was resolved by downgrading all third party referrers to their origin. This issue is fixed in Safari 13.0.3, iTunes 12.10.2 for Windows, iCloud for Windows 10.9.2, tvOS 13.2, iOS 13.2 and iPadOS 13.2, iCloud for Windows 7.15. Visiting a maliciously crafted website may reveal the sites a
nvdapple
CVE-2018-4278P4MEDIUMCVSS 4.3v7.62018-07-09
CVE-2018-4278 [MEDIUM] CVE-2018-4278: iCloud for Windows 7.6 Apple Security Update: About the security content of iCloud for Windows 7.6 Product: iCloud for Windows Version: 7.6 CVE: CVE-2018-4278 Component: WebKit Impact: A malicious website may exfiltrate audio data cross-origin Description: Sound fetched through audio elements may be exfiltrated cross-origin. This issue was addressed with improved audio taint tracking.
apple
CVE-2020-3894P4LOWCVSS 3.1≥ unspecified, < iCloud for Windows 10.9.3≥ unspecified, < iCloud for Windows 7.182020-04-01
CVE-2020-3894 [LOW] CWE-362 CVE-2020-3894: A race condition was addressed with additional validation. This issue is fixed in iOS 13.4 and iPadO A race condition was addressed with additional validation. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. An application may be able to read restricted memory.
nvd
CVE-2017-2383P4LOWCVSS 3.1v6.22017-03-28
CVE-2017-2383 [LOW] CVE-2017-2383: iCloud for Windows 6.2 Apple Security Update: About the security content of iCloud for Windows 6.2 Product: iCloud for Windows Version: 6.2 CVE: CVE-2017-2383 Component: APNs Server Impact: An attacker in a privileged network position can track a user's activity Description: A client certificate was sent in plaintext. This issue was addressed through improved certificate handling.
apple
Apple Icloud For Windows vulnerabilities | cvebase