VDB
CVE-2023-28203
CVE-2023-28203
PUBLISHED
CVSS 5.5 MEDIUM
The issue was addressed with improved checks. This issue is fixed in Apple Music 4.2.0 for Android. An app may be able to access contacts.
EPSS 0.20% · 9.5th percentile
Risk Scores
CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS Score
0.20%
9.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| apple | music | 0, 0, 0 |
| Apple | Apple Music for Android | unspecified, * |
Timeline
- Jul 28, 2023 EPSS Score
- Jul 28, 2023 CVE Published
- Aug 31, 2023 EPSS Score
- Oct 4, 2023 EPSS Score
- Nov 7, 2023 EPSS Score
- Dec 11, 2023 EPSS Score
- Jan 14, 2024 EPSS Score
- Feb 17, 2024 EPSS Score
- Mar 22, 2024 EPSS Score
- Apr 26, 2024 EPSS Score
- May 30, 2024 EPSS Score
- Jul 3, 2024 EPSS Score