Fixed Intel

CISA Known Exploited Vulnerability

This vulnerability is actively exploited in the wild and listed in the CISA Known Exploited Vulnerabilities catalog.

Remediation Deadline: Sep 29, 2022

CVE-2020-9934

High
EPSS 2.4%CISA KEV
Apple/iOS, iPadOS, and macOS

Description

Apple iOS, iPadOS, and macOS contain an unspecified vulnerability involving input validation which can allow a local attacker to view sensitive user information.

EPSS — Exploit Probability

2.4%

Higher than 85.0% of all CVEs

Required Action

https://support.apple.com/en-us/HT211288, https://support.apple.com/en-us/HT211289; https://nvd.nist.gov/vuln/detail/CVE-2020-9934

Risk Assessment

ELEVATED
In CISA KEV

Details

Severity
High
EPSS
2.4%
CISA KEV
Yes
Ransomware
Unknown
Articles
0

Timeline

Published

Sep 8, 2022

Added to KEV

Sep 8, 2022

Remediation Due

Sep 29, 2022

Affected Product

Apple

iOS, iPadOS, and macOS

View all Apple CVEs