Vulnerabilities > Apple > Icloud > High

DATE CVE VULNERABILITY TITLE RISK
2020-04-01 CVE-2020-3909 Classic Buffer Overflow vulnerability in multiple products
A buffer overflow was addressed with improved bounds checking.
network
low complexity
apple oracle CWE-120
7.5
2020-02-28 CVE-2019-8741 Infinite Loop vulnerability in Apple products
A denial of service issue was addressed with improved input validation.
network
low complexity
apple CWE-835
7.8
2019-12-18 CVE-2019-8750 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Icloud and Watchos
Multiple memory corruption issues were addressed with improved input validation.
network
low complexity
apple CWE-119
7.5
2019-12-18 CVE-2019-8600 SQL Injection vulnerability in Apple products
A memory corruption issue was addressed with improved input validation.
network
low complexity
apple CWE-89
7.5
2019-12-18 CVE-2019-6236 Race Condition vulnerability in Apple Icloud
A race condition existed during the installation of iCloud for Windows.
network
high complexity
apple CWE-362
7.6
2019-12-18 CVE-2019-6232 Race Condition vulnerability in Apple Icloud
A race condition existed during the installation of iTunes for Windows.
network
high complexity
apple CWE-362
7.6
2019-01-11 CVE-2018-4262 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
In Safari before 11.1.2, iTunes before 12.8 for Windows, iOS before 11.4.1, tvOS before 11.4.1, iCloud for Windows before 7.6, multiple memory corruption issues were addressed with improved memory handling.
network
low complexity
apple canonical CWE-119
8.8
2019-01-11 CVE-2018-4213 Improper Input Validation vulnerability in multiple products
In iOS before 11.3, Safari before 11.1, iCloud for Windows before 7.4, tvOS before 11.3, watchOS before 4.3, iTunes before 12.7.4 for Windows, unexpected interaction causes an ASSERT failure.
network
low complexity
apple canonical webkitgtk CWE-20
8.8
2019-01-11 CVE-2018-4212 In iOS before 11.3, Safari before 11.1, iCloud for Windows before 7.4, tvOS before 11.3, watchOS before 4.3, iTunes before 12.7.4 for Windows, unexpected interaction causes an ASSERT failure.
network
low complexity
apple canonical webkitgtk
8.8
2019-01-11 CVE-2018-4209 Improper Input Validation vulnerability in multiple products
In iOS before 11.3, Safari before 11.1, iCloud for Windows before 7.4, tvOS before 11.3, watchOS before 4.3, iTunes before 12.7.4 for Windows, unexpected interaction causes an ASSERT failure.
network
low complexity
apple canonical webkit CWE-20
8.8