VDB

CVE-2017-13909

CVE-2017-13909 PUBLISHED CVSS 5.5 MEDIUM

An issue existed in the storage of sensitive tokens. This issue was addressed by placing the tokens in Keychain. This issue is fixed in macOS High Sierra 10.13. A local attacker may gain access to iCloud authentication tokens.

EPSS 0.23% · 13.7th percentile

Risk Scores

CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.23%
13.7th percentile

Affected Products

VendorProductVersions
ApplemacOS*
applemac_os_x10.0

Timeline

  • Dec 23, 2021 CVE Published
  • Dec 24, 2021 EPSS Score
  • Jan 6, 2022 CVE Updated
  • Feb 4, 2022 EPSS Score
  • Feb 16, 2022 EPSS Score
  • Apr 11, 2022 EPSS Score
  • Jun 4, 2022 EPSS Score
  • Jul 29, 2022 EPSS Score
  • Sep 22, 2022 EPSS Score
  • Nov 15, 2022 EPSS Score
  • Mar 3, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›