QID 378339

Date Published: 2023-04-10

QID 378339: Apple iCloud for Windows Prior to 14.1 Multiple Vulnerabilities (HT213538)

iCloud is a cloud storage and cloud computing service from Apple Inc. Multiple vulnerabilities were reported in Apple iCloud for Windows.

Affected Versions:
Apple iCloud prior to 14.1

QID Detection Logic(Authenticated):
This QID checks for the vulnerable version of iCloud.exe

Successful exploitation of these vulnerabilities may lead to arbitrary code execution, information disclosure and bypass Same Origin Policy

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as Medium - 4.6 severity.
  • Solution

    Apple iCloud 14.1 has been released to address these vulnerabilities. The update can be downloaded and installed via Apple Downloads.
    For more information please visit HT213538

    Vendor References

    CVEs related to QID 378339

    Software Advisories
    Advisory ID Software Component Link
    HT213538 URL Logo support.apple.com/en-us/HT213538