Security Advisory

CVE-2014-1242

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2014-01-23 19:00:00
Last updated 2024-08-06 09:34:41
Assigner apple
CVSS score not scored
State PUBLISHED

Description

Apple iTunes before 11.1.4 uses HTTP for the iTunes Tutorials window, which allows man-in-the-middle attackers to spoof content by gaining control over the client-server data stream.