CVE

Id
83197  
CVE No.
CVE-2015-5920  
Status
Candidate  
Description
The Software Update component in Apple iTunes before 12.3 does not properly handle redirection, which allows man-in-the-middle attackers to discover encrypted SMB credentials via unspecified vectors.  
Phase
Assigned (20150806)  
Votes
None (candidate not yet proposed)  
Comments