PT-2020-17775 · Apple · Apple Macos
Daramg
+1
·
Published
2020-04-01
·
Updated
2021-07-21
·
CVE-2020-3884
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
macOS versions prior to 10.15.4
Description
A remote attacker may be able to cause arbitrary javascript code execution due to an injection issue. The issue was addressed with improved validation.
Recommendations
For versions prior to 10.15.4, update to macOS Catalina 10.15.4 to resolve the issue.
Fix
Special Elements Injection
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Apple Macos