ZeroHour

CVE-2017-13890

CVSS 3.0
7.4 high
EPSS
1%p66
Published
()
Modified
Description

An issue was discovered in certain Apple products. macOS before 10.13.4 is affected. macOS before 10.13 is affected. The issue involves the "CoreTypes" component. It allows remote attackers to trigger disk-image mounting via a crafted web site.

Vendors
apple
Products
mac os x
Weakness
CWE-20
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:H/A:N

In the news