Security Advisory
CVE-2016-1742
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Untrusted search path vulnerability in the installer in Apple iTunes before 12.4 allows local users to gain privileges via a Trojan horse DLL in the current working directory.