6.5

CVE-2024-23206

An access issue was addressed with improved access restrictions. This issue is fixed in watchOS 10.3, tvOS 17.3, iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.3, iOS 16.7.5 and iPadOS 16.7.5, Safari 17.3. A maliciously crafted webpage may be able to fingerprint the user.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AppleSafari Version < 17.3
AppleiPadOS Version > 16.0 < 16.7.5
AppleiPadOS Version > 17.0 < 17.3
AppleiPhone OS Version > 16.0 < 16.7.5
AppleiPhone OS Version > 17.0 < 17.3
ApplemacOS Version < 14.3
AppletvOS Version < 17.3
ApplewatchOS Version < 10.3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.48% 0.639
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
134c704f-9b21-4f2e-91b3-4a467353bcc0 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

https://support.apple.com/en-us/HT214063
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214059
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214061
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214060
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214055
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214056
Vendor Advisory
Release Notes