Critical severity9.1NVD Advisory· Published Oct 22, 2020· Updated Jun 17, 2026
CVE-2020-9920
CVE-2020-9920
Description
A path handling issue was addressed with improved validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, watchOS 6.2.8. A malicious mail server may overwrite arbitrary mail files.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
11cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*range: <13.6
- (no CPE)range: before 13.6
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*range: <6.2.8
- (no CPE)range: before 6.2.8
- (no CPE)range: unspecified
- Range: before 10.15.6
before 13.6+ 1 more
- (no CPE)range: before 13.6
- (no CPE)range: unspecified
- Range: unspecified
Patches
Vulnerability mechanics
References
3- support.apple.com/kb/HT211288nvdVendor Advisory
- support.apple.com/kb/HT211289nvdVendor Advisory
- support.apple.com/kb/HT211291nvdVendor Advisory
News mentions
0No linked articles in our index yet.