QID 375506

Date Published: 2021-04-28

QID 375506: Apple iCloud for Windows Prior to 12.3 Multiple Vulnerabilities(HT212321)

iCloud is a cloud storage and cloud computing service from Apple Inc. Multiple vulnerabilities were reported in Apple iCloud for Windows.

Affected Versions:
Apple iCloud prior to 12.3

QID Detection Logic(Authenticated):
This QID checks for the vulnerable version of iCloud.exe

Successful exploitation of these vulnerabilities can lead to session hijacking, kernel memory corruption, disclosure of sensitive data and process memory etc.

  • CVSS V3 rated as Medium - 5.5 severity.
  • CVSS V2 rated as Medium - 4.9 severity.
  • Solution

    Apple iCloud 12.3 has been released to address these vulnerabilities. The update can be downloaded and installed via Apple Downloads.
    For more information please visit HT212321

    Vendor References

    CVEs related to QID 375506

    Software Advisories
    Advisory ID Software Component Link
    HT212321 URL Logo support.apple.com/en-in/HT212321