Apple Itunes vulnerabilities
953 known vulnerabilities affecting apple/itunes.
Total CVEs
953
CISA KEV
2
actively exploited
Public exploits
77
Exploited in wild
3
Severity breakdown
CRITICAL114HIGH486MEDIUM348LOW5
Vulnerabilities
Page 44 of 48
CVE-2011-0111HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0111 [HIGH] CWE-119 CVE-2011-0111: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0128HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0128 [HIGH] CWE-119 CVE-2011-0128: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0143HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0143 [HIGH] CWE-119 CVE-2011-0143: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0126HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0126 [HIGH] CWE-119 CVE-2011-0126: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0123HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0123 [HIGH] CWE-119 CVE-2011-0123: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0115HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0115 [HIGH] CWE-119 CVE-2011-0115: The DOM level 2 implementation in WebKit, as used in Apple iTunes before 10.2 on Windows and Apple S
The DOM level 2 implementation in WebKit, as used in Apple iTunes before 10.2 on Windows and Apple Safari, does not properly handle DOM manipulations associated with event listeners during processing of range objects, which allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash)
nvd
CVE-2011-0165HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0165 [HIGH] CWE-119 CVE-2011-0165: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0149HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0149 [HIGH] CWE-119 CVE-2011-0149: WebKit, as used in Apple iTunes before 10.2 on Windows, does not properly parse HTML elements associ
WebKit, as used in Apple iTunes before 10.2 on Windows, does not properly parse HTML elements associated with document namespaces, which allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to a "dangling pointer" and iTunes Store browsing, a different vul
nvd
CVE-2011-0119HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0119 [HIGH] CWE-119 CVE-2011-0119: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0127HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0127 [HIGH] CWE-119 CVE-2011-0127: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0139HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0139 [HIGH] CWE-119 CVE-2011-0139: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0113HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0113 [HIGH] CWE-119 CVE-2011-0113: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0155HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0155 [HIGH] CWE-119 CVE-2011-0155: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0125HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0125 [HIGH] CWE-119 CVE-2011-0125: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0135HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0135 [HIGH] CWE-119 CVE-2011-0135: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0153HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0153 [HIGH] CWE-119 CVE-2011-0153: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0117HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0117 [HIGH] CWE-119 CVE-2011-0117: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0146HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0146 [HIGH] CWE-119 CVE-2011-0146: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0144HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0144 [HIGH] CWE-119 CVE-2011-0144: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd
CVE-2011-0151HIGHCVSS 7.6≤ 10.1.2v4.0.0+63 more2011-03-03
CVE-2011-0151 [HIGH] CWE-119 CVE-2011-0151: WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execut
WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
nvd