Revision Date: | 2015-06-22 | Version: | 12 |
Title: | Apple iTunes Information Disclosure Vulnerability |
Description: | Apple iTunes before 8.1 does not properly inform the user about the origin of an authentication request, which makes it easier for remote podcast servers to trick a user into providing a username and password when subscribing to a crafted podcast. |
Family: | windows | Class: | vulnerability |
Status: | ACCEPTED | Reference(s): | CVE-2009-0143
|
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows 8 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Server 2008 R2 Microsoft Windows Server 2012 Microsoft Windows Vista Microsoft Windows XP
| Product(s): | Apple iTunes
|
Definition Synopsis |
Apple iTunes is installed AND iTunes.exe version is less than 8.1.0.51
|