AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2017-7090

HIGH · CVSS 7.5 EPSS 1.95%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-10-23 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.5. It affects Windows. It may be remotely exploitable.

CVE
CVE-2017-7090
Severity
HIGH
CVSS
7.5
EPSS
1.95%
Windows

Original NVD Description

An issue was discovered in certain Apple products. iOS before 11 is affected. Safari before 11 is affected. iCloud before 7.0 on Windows is affected. iTunes before 12.7 on Windows is affected. tvOS before 11 is affected. The issue involves the "WebKit" component. It allows remote attackers to bypass the Same Origin Policy and obtain sensitive cookie information via a custom URL scheme.

Related CVEs

Other vulnerabilities affecting the same vendor(s)