Vulnerabilities
Vulnerable Software
Apple:  >> Itunes  >> 7.0.2  Security Vulnerabilities
Apple iTunes before 8.0 on Mac OS X 10.4.11, when iTunes Music Sharing is enabled but blocked by the host-based firewall, presents misleading information about firewall security, which might allow remote attackers to leverage an exposure that would be absent if the administrator were given better information.
CVSS Score
2.6
EPSS Score
0.017
Published
2008-09-11
Heap-based buffer overflow in Apple iTunes before 7.4 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via crafted album cover art in the covr atom of an MP4/AAC file.
CVSS Score
9.3
EPSS Score
0.055
Published
2007-09-06
Apple iTunes 7.0.2 allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted XML list of radio stations, which results in memory corruption. NOTE: iTunes retrieves the XML document from a static URL, which requires an attacker to perform DNS spoofing or man-in-the-middle attacks for exploitation.
CVSS Score
2.6
EPSS Score
0.021
Published
2007-02-20


Contact Us

Shodan ® - All rights reserved