CVE-2025-24206

Scores

EPSS

0.000none0.0%
0%20%40%60%80%100%

Percentile: 0.0%

CVSS

7.7high3.x
0246810

CVSS Score: 7.7/10

All CVSS Scores

CVSS 3.x
7.7

Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Description

An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.4, tvOS 18.4, macOS Ventura 13.7.5, iPadOS 17.7.6, macOS Sonoma 14.7.5, iOS 18.4 and iPadOS 18.4, visionOS 2.4. An attacker on the local network may be able to bypass authentication policy.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

CWEs

CWE-288

Related Vulnerabilities

Vulnerable Software (5)

Type: Configuration

Vendor: apple

Product: ipados

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*",      "versionEndExcluding": "17.7.6",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:o:apple:ipa...

Source: nvd

Type: Configuration

Vendor: apple

Product: iphone_os

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*",      "versionEndExcluding": "17.7.6",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:o:apple:ipa...

Source: nvd

Type: Configuration

Vendor: apple

Product: macos

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*",      "versionEndExcluding": "17.7.6",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:o:apple:ipa...

Source: nvd

Type: Configuration

Vendor: apple

Product: tvos

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*",      "versionEndExcluding": "17.7.6",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:o:apple:ipa...

Source: nvd

Type: Configuration

Vendor: apple

Product: visionos

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*",      "versionEndExcluding": "17.7.6",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:o:apple:ipa...

Source: nvd