Known vulnerabilities in iCloud for Windows

Vendor: Apple Inc.
Software CPE: cpe:2.3:a:apple:icloud_for_windows:*:*:*:*:*:*:*:*
Total vulnerabilities: 103
Public exploits: 4
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting iCloud for Windows iCloud for Windows is affected by 103 known vulnerabilities: 64 high, 7 medium, 32 low Critical High Medium Low

Vulnerabilities (103)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU70243 - Exposure of sensitive information to an unauthorized actor
CVE-2022-46698
CWE-200 Medium
No
No
14.1 13.12.2022 SB2022121386
SB2022121387
SB2022121390
and 22 more
#VU70236 - Security Features
CVE-2022-46692
CWE-254 Medium
No
No
14.1 13.12.2022 SB2022121386
SB2022121387
SB2022121390
and 23 more
#VU70210 - Out-of-bounds write
CVE-2022-46693
CWE-787 High
No
No
14.1 13.12.2022 SB2022121387
SB2022121401
SB2022121402
and 2 more
#VU55205 - Memory corruption
CVE-2021-30785
CWE-119 High
No
No
12.5 22.07.2021 SB2021072214
SB2021072216
SB2021072217
and 4 more
#VU55204 - Memory corruption
CVE-2021-30779
CWE-119 High
No
No
12.5 22.07.2021 SB2021072214
SB2021072216
SB2021072217
and 3 more
#VU52643 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-1825
CWE-79 Medium
No
No
12.3 27.04.2021 SB2021042710
SB2021042801
SB2021042802
and 13 more
#VU52605 - Out-of-bounds read
CVE-2021-1811
CWE-125 Medium
No
No
12.3 27.04.2021 SB2021042704
SB2021042802
SB2021042803
and 3 more
#VU52600 - Improper Initialization
CVE-2021-1857
CWE-665 Medium
No
No
12.3 27.04.2021 SB2021042704
SB2021042802
SB2021042803
and 3 more
#VU48991 - Out-of-bounds write
CVE-2020-29611
CWE-787 High
No
No
12.0 15.12.2020 SB2020121514
SB2020121517
SB2020121518
and 2 more
#VU48990 - Out-of-bounds read
CVE-2020-29618
CWE-125 High
No
No
12.0 15.12.2020 SB2020121514
SB2020121517
SB2020121518
and 2 more
#VU48989 - Out-of-bounds read
CVE-2020-29619
CWE-125 Medium
No
No
12.0 15.12.2020 SB2020121514
SB2020121517
SB2020121518
and 2 more
#VU48988 - Out-of-bounds read
CVE-2020-29617
CWE-125 Medium
No
No
12.0 15.12.2020 SB2020121514
SB2020121517
SB2020121518
and 2 more
#VU46227 - Use After Free
CVE-2020-7463
CWE-416 Low
No
No
12.3 03.09.2020 SB2020090303
SB2021042802
SB2021042803
and 2 more
#VU17168 - Type confusion
CVE-2019-6215
CWE-843 High
No
No
7.10 23.01.2019 SB2019012301
SB2019012303
SB2019012304
and 9 more
#VU17166 - Memory corruption
CVE-2019-6233
CWE-119 High
No
No
7.10 23.01.2019 SB2019012301
SB2019012303
SB2019012304
and 5 more
#VU17165 - Memory corruption
CVE-2019-6227
CWE-119 High
No
No
7.10 23.01.2019 SB2019012301
SB2019012303
SB2019012304
and 7 more
#VU17164 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2018-20506
CWE-89 Low
No
No
7.10 23.01.2019 SB2019012301
SB2019012302
SB2019012304
and 8 more
#VU17163 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2018-20505
CWE-89 Low
No
No
7.10 23.01.2019 SB2019012301
SB2019012302
SB2019012304
and 5 more
#VU17162 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2018-20346
CWE-89 Low
No
No
7.10 23.01.2019 SB2019012301
SB2019012302
SB2019012304
and 16 more
#VU17161 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-6229
CWE-79 Low
No
No
7.10 23.01.2019 SB2019012301
SB2019012303
SB2019012304
and 6 more


Showing elements 1 - 20 out of 103