CVE-2020-9925
A logic issue was addressed with improved state management. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.1.2, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Processing maliciously crafted web content may lead to universal cross site scripting.
Published
2020-10-16T17:15:17.403
Last Modified
2024-11-21T05:41:32.273
Status
Modified
Source
[email protected]
Severity
CVSSv3.1: 6.1 (MEDIUM)
CVSSv2 Vector
AV:N/AC:M/Au:N/C:N/I:P/A:N
- Access Vector: NETWORK
- Access Complexity: MEDIUM
- Authentication: NONE
- Confidentiality Impact: NONE
- Integrity Impact: PARTIAL
- Availability Impact: NONE
Exploitability Score
8.6
Impact Score
2.9
Weaknesses
Affected Vendors & Products
References
-
https://support.apple.com/HT211288
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/HT211290
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/HT211291
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/HT211292
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/HT211293
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/HT211294
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/HT211295
Release Notes, Vendor Advisory
([email protected])
-
https://support.apple.com/HT211288
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/HT211290
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/HT211291
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/HT211292
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/HT211293
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/HT211294
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://support.apple.com/HT211295
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)