Описание
An authentication issue was addressed with improved state management. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.7.9, macOS Sonoma 14.8.9, macOS Tahoe 26.6.1, macOS Tahoe 26.7. An attacker on the network may be able to authenticate to Screen Sharing without valid credentials.
Ссылки
- Release NotesVendor Advisory
- Release NotesVendor Advisory
- Release NotesVendor Advisory
- Release NotesVendor Advisory
- Release NotesVendor Advisory
- Mailing List
- Broken Link
- Third Party Advisory
- US Government Resource
Уязвимые конфигурации
Конфигурация 1Версия от 14.0 (включая) до 14.8.9 (исключая)Версия от 15.0 (включая) до 15.7.9 (исключая)Версия от 26.0 (включая) до 26.6.1 (исключая)
Одно из
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
EPSS
Процентиль: 96%
0.10461
Средний
9.8 Critical
CVSS3
Дефекты
CWE-287
Связанные уязвимости
CVSS3: 7.1
github
около 2 месяцев назад
An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macOS Sonoma 14.8.9, macOS Tahoe 26.6.1. An attacker on the network may be able to authenticate to Screen Sharing without valid credentials.
CVSS3: 9.8
fstec
около 2 месяцев назад
Уязвимость службы Screen Sharing операционных систем Apple macOS, позволяющая нарушителю получить полный контроль над системой
EPSS
Процентиль: 96%
0.10461
Средний
9.8 Critical
CVSS3
Дефекты
CWE-287