File Handling Vulnerability in Apple TV App for Fire OS
CVE-2020-27940

4.3MEDIUM

Key Information:

Vendor
Apple
Vendor
CVE Published:
8 September 2021

Summary

This vulnerability is associated with improper file handling in the Apple TV app for Fire OS, allowing an attacker with file system access to modify scripts utilized by the application. This flaw could lead to unauthorized manipulation of app functionality, potentially compromising user data or application integrity. Apple has released updates to mitigate the risks associated with this vulnerability in version 6.1.0.6A142:7.1.0 of the app.

Affected Version(s)

Apple TV app for Fire OS < 6.1.0.6A142:7.1.0

References

CVSS V3.1

Score:
4.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.