CVE-2019-6232: Apple iCloud
High severity, CVSS 7.5. EPSS: 1.2% chance of exploitation in the next 30 days.
A race condition existed during the installation of iTunes for Windows. This was addressed with improved state handling. This issue is fixed in iCloud for Windows 7.11. Running the iTunes installer in an untrusted directory may result in arbitrary code execution.
Affected products
- Apple iCloud: before 7.11 (fixed in 7.11)
Published 2019-12-18. Last modified 2026-06-17.