VDB

CVE-2023-32427

CVE-2023-32427 PUBLISHED CVSS 5.900000095367432 MEDIUM

This issue was addressed by using HTTPS when sending information over the network. This issue is fixed in Apple Music 4.2.0 for Android. An attacker in a privileged network position may be able to intercept network traffic.

EPSS 0.43% · 35.6th percentile

Risk Scores

CVSS 3.1
5.900000095367432
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
EPSS Score
0.43%
35.6th percentile

Affected Products

VendorProductVersions
AppleApple Music for Android*, unspecified
applemusic0, 0

Timeline

  • Jul 28, 2023 EPSS Score
  • Jul 28, 2023 CVE Published
  • Aug 31, 2023 EPSS Score
  • Oct 4, 2023 EPSS Score
  • Nov 7, 2023 EPSS Score
  • Dec 11, 2023 EPSS Score
  • Jan 14, 2024 EPSS Score
  • Feb 17, 2024 EPSS Score
  • Mar 22, 2024 EPSS Score
  • Apr 26, 2024 EPSS Score
  • May 30, 2024 EPSS Score
  • Jul 3, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›