KLA11579
Multiple vulnerabilities in Apple iCloud

Updated: 06/03/2020
Detect date
?
09/07/2019
Severity
?
Critical
Description

Multiple vulnerabilities were found in Apple iCloud. Malicious users can exploit these vulnerabilities to execute arbitrary code, perform cross-site scripting attack.

Below is a complete list of vulnerabilities:

  1. Vulnerabilitiy in WebKit can be exploited remotely via specially crafted text file to execute arbitrary code;
  2. Vulnerabilitiy in WebKit can be exploited remotely via specially crafted web content to perform cross-site scripting attacks;
  3. Vulnerabilitiy in UIFoundation can be exploited remotely via specially crafted text file to execute arbitrary code;
Affected products

Apple iCloud earlier than 7.14
Apple iCloud earlier than 10.7

Solution

Update to the latest version
Download iCloud

Original advisories

HT210636
HT210637

Impacts
?
ACE 
[?]

XSS/CSS 
[?]
Related products
Apple iCloud
CVE-IDS
?
Find out the statistics of the vulnerabilities spreading in your region