ZeroHour

CVE-2018-4251

CVSS 3.0
5.5 medium
EPSS
1%p67
Published
()
Modified
Description

An issue was discovered in certain Apple products. macOS before 10.13.5 is affected. The issue involves the "Firmware" component. It allows attackers to modify the EFI flash-memory region that a crafted app that has root access.

Vendors
apple
Products
mac os x
Weakness
CWE-732
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

In the news