CVE-2014-1242

Publication date

2014-01-23 19:00:00

Family

apple

State

PUBLISHED

Description

Apple iTunes before 11.1.4 uses HTTP for the iTunes Tutorials window, which allows man-in-the-middle attackers to spoof content by gaining control over the client-server data stream.