CVE-2026-28836
בינונית 6.1
תיאור (מקור, אנגלית)
A correctness issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.8.8. An attacker with physical access may be able to silently persist an Apple Account on an erased device.
מדדים
- CVSS 3.1
-
6.1 (MEDIUM)
מקור הציון: CNA
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-1/10/2026
- CWE
- CWE-359
מוצרים מושפעים
apple: macos
קישורים
- https://support.apple.com/en-us/128072 Release NotesVendor Advisory