CVE Vulnerabilities

CVE-2020-9802

Published: Jun 09, 2020 | Modified: Jan 09, 2023
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.5 and iPadOS 13.5, tvOS 13.4.5, watchOS 6.2.5, Safari 13.1.1, iTunes 12.10.7 for Windows, iCloud for Windows 11.2, iCloud for Windows 7.19. Processing maliciously crafted web content may lead to arbitrary code execution.

Affected Software

Name Vendor Start Version End Version
Icloud Apple * 7.19 (excluding)
Icloud Apple 11.0 (including) 11.2 (excluding)
Itunes Apple * 12.10.7 (excluding)
Safari Apple * 13.1.1 (excluding)
Ipados Apple * 13.5 (excluding)
Iphone_os Apple * 13.5 (excluding)
Tvos Apple * 13.4.5 (excluding)
Watchos Apple * 6.2.5 (excluding)

References