CVE-2024-44193

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Oct 2, 2024
Updated: Mar 13, 2025
CWE ID 281

Summary

CVE-2024-44193 is a recently identified logic issue in iTunes for Windows. This vulnerability enabled local attackers to potentially elevate their privileges within the system. Apple addressed this issue by implementing improved restrictions in iTunes version 12.13.3. The specifics of the exploit are not yet publicly disclosed, but users are strongly encouraged to update their iTunes installations to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share