CVE-2010-1795

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/08/2010
Last modified:
11/04/2025

Description

Untrusted search path vulnerability in Apple iTunes before 9.1, when running on Windows 7, Vista, and XP, allows local users and possibly remote attackers to gain privileges via a Trojan horse DLL in the current working directory.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:apple:itunes:1.0:-:windows:*:*:*:*:*
cpe:2.3:a:apple:itunes:1.1.1:-:windows:*:*:*:*:*
cpe:2.3:a:apple:itunes:1.1.2:-:windows:*:*:*:*:*
cpe:2.3:a:apple:itunes:2.0.0:-:windows:*:*:*:*:*
cpe:2.3:a:apple:itunes:2.0.1:-:windows:*:*:*:*:*
cpe:2.3:a:apple:itunes:2.0.2:-:windows:*:*:*:*:*
cpe:2.3:a:apple:itunes:2.0.3:-:windows:*:*:*:*:*
cpe:2.3:a:apple:itunes:2.0.4:-:windows:*:*:*:*:*
cpe:2.3:a:apple:itunes:3.0.0:-:windows:*:*:*:*:*
cpe:2.3:a:apple:itunes:3.0.1:-:windows:*:*:*:*:*
cpe:2.3:a:apple:itunes:4.0.0:-:windows:*:*:*:*:*
cpe:2.3:a:apple:itunes:4.0.1:-:windows:*:*:*:*:*
cpe:2.3:a:apple:itunes:4.1.0:-:windows:*:*:*:*:*
cpe:2.3:a:apple:itunes:4.2.0:-:windows:*:*:*:*:*
cpe:2.3:a:apple:itunes:4.5.0:-:windows:*:*:*:*:*