PT-2023-2911 · Apple · Itunes

Bugzzzhunter

+1

·

Published

2023-05-23

·

Updated

2024-12-05

·

CVE-2023-32353

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions iTunes versions prior to 12.12.9 for Windows
Description The issue is related to a logic problem that has been addressed with improved checks. It may allow an attacker to elevate privileges.
Recommendations For versions prior to 12.12.9, update to iTunes 12.12.9 for Windows to resolve the issue.

Exploit

Fix

Incorrect Authorization

Improper Access Control

Weakness Enumeration

Related Identifiers

BDU:2023-02876
CVE-2023-32353

Affected Products

Itunes