Apple TV < 26.1 Multiple Vulnerabilities (125637)

medium Nessus Plugin ID 275165

Synopsis

The remote Apple TV device is affected by multiple vulnerabilities

Description

According to its banner, the version of Apple TV on the remote device is prior to 26.1. It is therefore affected by multiple vulnerabilities as described in the 125637

Solution

Upgrade to Apple TV version 26.1 or later.

See Also

https://support.apple.com/en-us/125637

Plugin Details

Severity: Medium

ID: 275165

File Name: appletv_26_1.nasl

Version: 1.1

Type: remote

Family: Misc.

Published: 11/12/2025

Updated: 11/12/2025

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 6.7

CVSS v2

Risk Factor: High

Base Score: 7.5

Temporal Score: 5.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

CVSS Score Source: CVE-2025-43400

CVSS v3

Risk Factor: Medium

Base Score: 6.3

Temporal Score: 5.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

CPE: cpe:/a:apple:apple_tv

Required KB Items: AppleTV/Version, AppleTV/Model, AppleTV/URL, AppleTV/Port

Exploit Ease: No known exploits are available

Patch Publication Date: 11/3/2025

Vulnerability Publication Date: 9/15/2025

Reference Information

CVE: CVE-2025-43294, CVE-2025-43379, CVE-2025-43383, CVE-2025-43384, CVE-2025-43385, CVE-2025-43386, CVE-2025-43392, CVE-2025-43398, CVE-2025-43400, CVE-2025-43407, CVE-2025-43413, CVE-2025-43425, CVE-2025-43427, CVE-2025-43429, CVE-2025-43430, CVE-2025-43431, CVE-2025-43432, CVE-2025-43433, CVE-2025-43435, CVE-2025-43436, CVE-2025-43440, CVE-2025-43441, CVE-2025-43443, CVE-2025-43444, CVE-2025-43445, CVE-2025-43448, CVE-2025-43458, CVE-2025-43462, CVE-2025-43480

APPLE-SA: 125637, APPLE-SA-2025-11-03