CVE-2010-1795

Description

Untrusted search path vulnerability in Apple iTunes before 9.1, when running on Windows 7, Vista, and XP, allows local users and possibly remote attackers to gain privileges via a Trojan horse DLL in the current working directory.

Risk Information

Base Score
8.4
MODERATE
Vector
AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
1.966

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities affected in Apple iTunes (X64) 9.0.3Windows
Multiple vulnerabilities affected in Apple iTunes 9.0.3Windows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 1.0_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 1.1.1_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 1.1.2_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 2.0.1_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 2.0.2_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 2.0.3_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 2.0.4_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 3.0.1_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 4.0.1_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 4.7.1_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 5.0.1_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 6.0.1_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 6.0.2_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 6.0.3_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 6.0.4.2_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 6.0.4_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 6.0.5_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.0.2_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.3.2_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.4.1_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.4.2_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.4.3_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.6.2_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.7.1_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 1.0_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 1.1.1_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 1.1.2_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 2.0.1_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 2.0.2_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 2.0.3_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 2.0.4_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 3.0.1_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 4.0.1_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 4.7.1_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 5.0.1_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 6.0.1_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 6.0.2_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 6.0.3_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 6.0.4.2_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 6.0.4_windowsWindows
Vulnerabilities CVE-2008-3636,CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 6.0.5_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.0.2_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.3.2_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.4.1_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.4.2_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.4.3_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.6.2_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.7.1_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 4.0.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 4.1.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 4.2.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 4.5.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 4.6.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 4.7.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 4.8.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 4.9.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 5.0.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes (X64) 6.0.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.0.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.0.1_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.1.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.1.1_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.2.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.3.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.3.1_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.4.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.5.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.6.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.6.1_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.7.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 4.0.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 4.1.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 4.2.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 4.5.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 4.6.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 4.7.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 4.8.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 4.9.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 5.0.0_windowsWindows
Vulnerabilities CVE-2009-0016,CVE-2009-2817,CVE-2010-1795 are affected in Apple iTunes 6.0.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.0.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.0.1_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.1.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.1.1_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.2.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.3.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.3.1_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.4.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.5.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.6.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.6.1_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 7.7.0_windowsWindows
Vulnerabilities CVE-2009-2817,CVE-2010-1763,CVE-2010-1769,CVE-2010-1795 are affected in Apple iTunes (X64) 8.0.1_windowsWindows
Vulnerabilities CVE-2009-2817,CVE-2010-1763,CVE-2010-1769,CVE-2010-1795 are affected in Apple iTunes (X64) 8.0.2_windowsWindows
Vulnerabilities CVE-2009-2817,CVE-2010-1763,CVE-2010-1769,CVE-2010-1795 are affected in Apple iTunes (X64) 8.0_windowsWindows
Vulnerabilities CVE-2009-2817,CVE-2010-1763,CVE-2010-1769,CVE-2010-1795 are affected in Apple iTunes (X64) 8.1.1_windowsWindows
Vulnerabilities CVE-2009-2817,CVE-2010-1763,CVE-2010-1769,CVE-2010-1795 are affected in Apple iTunes (X64) 8.1_windowsWindows
Vulnerabilities CVE-2009-2817,CVE-2010-1763,CVE-2010-1769,CVE-2010-1795 are affected in Apple iTunes (X64) 8.2.1_windowsWindows
Vulnerabilities CVE-2009-2817,CVE-2010-1763,CVE-2010-1769,CVE-2010-1795 are affected in Apple iTunes (X64) 8.2_windowsWindows
Vulnerabilities CVE-2009-2817,CVE-2010-1763,CVE-2010-1769,CVE-2010-1795 are affected in Apple iTunes 8.0.1_windowsWindows
Vulnerabilities CVE-2009-2817,CVE-2010-1763,CVE-2010-1769,CVE-2010-1795 are affected in Apple iTunes 8.0.2_windowsWindows
Vulnerabilities CVE-2009-2817,CVE-2010-1763,CVE-2010-1769,CVE-2010-1795 are affected in Apple iTunes 8.0_windowsWindows
Vulnerabilities CVE-2009-2817,CVE-2010-1763,CVE-2010-1769,CVE-2010-1795 are affected in Apple iTunes 8.1.1_windowsWindows
Vulnerabilities CVE-2009-2817,CVE-2010-1763,CVE-2010-1769,CVE-2010-1795 are affected in Apple iTunes 8.1_windowsWindows
Vulnerabilities CVE-2009-2817,CVE-2010-1763,CVE-2010-1769,CVE-2010-1795 are affected in Apple iTunes 8.2.1_windowsWindows
Vulnerabilities CVE-2009-2817,CVE-2010-1763,CVE-2010-1769,CVE-2010-1795 are affected in Apple iTunes 8.2_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 9.0.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 9.0.1_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 9.0.2_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 9.0.0_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 9.0.1_windowsWindows
Multiple Vulnerabilities are affected in Apple iTunes 9.0.2_windowsWindows
Vulnerabilities CVE-2010-1763,CVE-2010-1769,CVE-2010-1795 are affected in Apple iTunes (X64) 9.0.3_windowsWindows
Vulnerabilities CVE-2010-1763,CVE-2010-1769,CVE-2010-1795 are affected in Apple iTunes 9.0.3_windowsWindows
Vulnerabilities CVE-2010-1795 are affected in Apple iTunes (X64) 2.0.0_windowsWindows
Vulnerabilities CVE-2010-1795 are affected in Apple iTunes (X64) 3.0.0_windowsWindows
Vulnerabilities CVE-2010-1795 are affected in Apple iTunes 2.0.0_windowsWindows
Vulnerabilities CVE-2010-1795 are affected in Apple iTunes 3.0.0_windowsWindows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-342817Apple iTunes (X64) (12.13.4.4)
PATCH-342816Apple iTunes (12.13.4.4)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234