383
VMScore

CVE-2019-6229

Published: 05/03/2019 Updated: 19/03/2019
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

A logic issue was addressed with improved validation. This issue is fixed in iOS 12.1.3, tvOS 12.1.2, Safari 12.0.3, iTunes 12.9.3 for Windows, iCloud for Windows 7.10. Processing maliciously crafted web content may lead to universal cross site scripting.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apple safari

apple iphone os

apple tvos

apple itunes

apple icloud

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> Full Disclosure mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> APPLE-SA-2019-1-24-1 iTunes 1293 for Windows <!--X-Subject-Header-End--> <!--X-Head-of-Message--> From: Apple Prod ...

Recent Articles

Plug in your iPhone, iPad, iPod, fire up the App Store: You have new Apple patches to install
The Register • Shaun Nichols in San Francisco • 23 Jan 2019

Open the door, get on the floor – not so fast if you've an iPhone 4 Old bugs, new bugs, red bugs … yes, it's Oracle mega-update day again

Apple has emitted a handful of software patches to address security vulnerabilities in iOS, macOS, and various peripherals. The round of updates includes a number of fixes for critical flaws in WebKit, FaceTime, and Mac and iThing kernels. For iOS handhelds, the update is billed as iOS 12.1.3. It applies to iPhone 5s and newer, iPad Air and newer, and iPod Touch 6th generation devices. Fixes for the mobile OS include a man-in-the-middle code execution flaw over Bluetooth (CVE-2019-6200), a remot...