CVE-2024-23268
CVE-2024-23268
Vexday Risk Score
21Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS 8.4EPSS 0.4%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
08 mar 2024Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
An injection issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. An app may be able to elevate privileges.
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Produtos afetados
Apple · macOSQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://seclists.org/fulldisclosure/2024/Mar/21http://seclists.org/fulldisclosure/2024/Mar/22http://seclists.org/fulldisclosure/2024/Mar/23https://support.apple.com/en-us/120884https://support.apple.com/en-us/120886https://support.apple.com/en-us/120895https://support.apple.com/en-us/HT214083https://support.apple.com/en-us/HT214084https://support.apple.com/en-us/HT214085https://support.apple.com/kb/HT214083https://support.apple.com/kb/HT214084https://support.apple.com/kb/HT214085