Apple Fixes UI Spoofing Vulnerability in macOS Ventura, Sonoma, and Sequoia

CVE-2024-40797
6.1MEDIUM

Key Information

Vendor
Apple
Status
Mac OS
Vendor
CVE Published:
17 September 2024

Summary

This issue was addressed through improved state management. This issue is fixed in macOS Ventura 13.7, macOS Sonoma 14.7, macOS Sequoia 15. Visiting a malicious website may lead to user interface spoofing.

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published.

Collectors

NVD Database
.