cbcvebase.

Apple Itunes vulnerabilities

953 known vulnerabilities affecting apple/itunes.

Total CVEs
953
CISA KEV
2
actively exploited
Public exploits
78
Exploited in wild
10
Severity breakdown
CRITICAL113HIGH487MEDIUM348LOW5

Vulnerabilities

Page 32 of 48
CVE-2015-1083P4MEDIUMCVSS 6.8≤ 12.12015-03-18
CVE-2015-1083 [MEDIUM] CWE-399 CVE-2015-1083: WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other CVEs listed in APPLE-SA-2015-03-17-1.
nvdapple
CVE-2015-1071P4MEDIUMCVSS 6.8≤ 12.12015-03-18
CVE-2015-1071 [MEDIUM] CWE-399 CVE-2015-1071: WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other CVEs listed in APPLE-SA-2015-03-17-1.
nvdapple
CVE-2015-1081P4MEDIUMCVSS 6.8≤ 12.12015-03-18
CVE-2015-1081 [MEDIUM] CWE-399 CVE-2015-1081: WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other CVEs listed in APPLE-SA-2015-03-17-1.
nvdapple
CVE-2015-1076P4MEDIUMCVSS 6.8≤ 12.12015-03-18
CVE-2015-1076 [MEDIUM] CWE-399 CVE-2015-1076: WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other CVEs listed in APPLE-SA-2015-03-17-1.
nvdapple
CVE-2013-0997P4MEDIUMCVSS 6.8≤ 11.0.2v4.0.0+77 more2013-05-20
CVE-2013-0997 [MEDIUM] CWE-399 CVE-2013-0997: WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitra WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-05-16-1.
nvd
CVE-2015-7100P4MEDIUMCVSS 6.8v12.3.2
CVE-2015-7100 [MEDIUM] CVE-2015-7100: iTunes 12.3.2 Apple Security Update: About the security content of iTunes 12.3.2 Product: iTunes Version: 12.3.2 CVE: CVE-2015-7100 Component: CVE-ID
apple
CVE-2015-7102P4MEDIUMCVSS 6.8v12.3.2
CVE-2015-7102 [MEDIUM] CVE-2015-7102: iTunes 12.3.2 Apple Security Update: About the security content of iTunes 12.3.2 Product: iTunes Version: 12.3.2 CVE: CVE-2015-7102 Component: CVE-ID
apple
CVE-2015-7096P4MEDIUMCVSS 6.8v12.3.2
CVE-2015-7096 [MEDIUM] CVE-2015-7096: iTunes 12.3.2 Apple Security Update: About the security content of iTunes 12.3.2 Product: iTunes Version: 12.3.2 CVE: CVE-2015-7096 Component: CVE-ID
apple
CVE-2015-7099P4MEDIUMCVSS 6.8v12.3.2
CVE-2015-7099 [MEDIUM] CVE-2015-7099: iTunes 12.3.2 Apple Security Update: About the security content of iTunes 12.3.2 Product: iTunes Version: 12.3.2 CVE: CVE-2015-7099 Component: CVE-ID
apple
CVE-2015-7097P4MEDIUMCVSS 6.8v12.3.2
CVE-2015-7097 [MEDIUM] CVE-2015-7097: iTunes 12.3.2 Apple Security Update: About the security content of iTunes 12.3.2 Product: iTunes Version: 12.3.2 CVE: CVE-2015-7097 Component: CVE-ID
apple
CVE-2015-7048P4MEDIUMCVSS 6.8v12.3.2
CVE-2015-7048 [MEDIUM] CVE-2015-7048: iTunes 12.3.2 Apple Security Update: About the security content of iTunes 12.3.2 Product: iTunes Version: 12.3.2 CVE: CVE-2015-7048 Component: CVE-ID
apple
CVE-2015-7103P4MEDIUMCVSS 6.8v12.3.2
CVE-2015-7103 [MEDIUM] CVE-2015-7103: iTunes 12.3.2 Apple Security Update: About the security content of iTunes 12.3.2 Product: iTunes Version: 12.3.2 CVE: CVE-2015-7103 Component: CVE-ID
apple
CVE-2015-7095P4MEDIUMCVSS 6.8v12.3.2
CVE-2015-7095 [MEDIUM] CVE-2015-7095: iTunes 12.3.2 Apple Security Update: About the security content of iTunes 12.3.2 Product: iTunes Version: 12.3.2 CVE: CVE-2015-7095 Component: CVE-ID
apple
CVE-2015-7098P4MEDIUMCVSS 6.8v12.3.2
CVE-2015-7098 [MEDIUM] CVE-2015-7098: iTunes 12.3.2 Apple Security Update: About the security content of iTunes 12.3.2 Product: iTunes Version: 12.3.2 CVE: CVE-2015-7098 Component: CVE-ID
apple
CVE-2015-5809P4MEDIUMCVSS 6.8≤ 12.22015-09-18
CVE-2015-5809 [MEDIUM] CWE-119 CVE-2015-5809: WebKit, as used in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arb WebKit, as used in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2015-09-16-1 and APPLE-SA-2015-09-16-3.
nvdapple
CVE-2015-5794P4MEDIUMCVSS 6.8≤ 12.22015-09-18
CVE-2015-5794 [MEDIUM] CWE-119 CVE-2015-5794: WebKit, as used in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arb WebKit, as used in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2015-09-16-1 and APPLE-SA-2015-09-16-3.
nvdapple
CVE-2015-5801P4MEDIUMCVSS 6.8≤ 12.22015-09-18
CVE-2015-5801 [MEDIUM] CWE-119 CVE-2015-5801: WebKit, as used in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arb WebKit, as used in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2015-09-16-1 and APPLE-SA-2015-09-16-3.
nvdapple
CVE-2015-1121P4MEDIUMCVSS 6.8≤ 12.12015-04-10
CVE-2015-1121 [MEDIUM] CVE-2015-1121: WebKit, as used in Apple iOS before 8.3, Apple TV before 7.2, and Apple Safari before 6.2.5, 7.x bef WebKit, as used in Apple iOS before 8.3, Apple TV before 7.2, and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2015-04-08-1, A
nvdapple
CVE-2015-1124P4MEDIUMCVSS 6.8≤ 12.12015-04-10
CVE-2015-1124 [MEDIUM] CVE-2015-1124: WebKit, as used in Apple iOS before 8.3, Apple TV before 7.2, and Apple Safari before 6.2.5, 7.x bef WebKit, as used in Apple iOS before 8.3, Apple TV before 7.2, and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2015-04-08-1, A
nvdapple
CVE-2015-1119P4MEDIUMCVSS 6.8≤ 12.12015-04-10
CVE-2015-1119 [MEDIUM] CVE-2015-1119: WebKit, as used in Apple iOS before 8.3, Apple TV before 7.2, and Apple Safari before 6.2.5, 7.x bef WebKit, as used in Apple iOS before 8.3, Apple TV before 7.2, and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2015-04-08-1, A
nvdapple
Apple Itunes vulnerabilities | cvebase