EXPOSURES › CVE-2020-9934
CVE-2020-9934
HIGH ⌖ ON CISA KEV · EXPLOITEDApple iOS, iPadOS, and macOS had an unpatched input validation vulnerability allowing local attackers to view sensitive user information.
Apple's iOS, iPadOS, and macOS operating systems were found to have a critical input validation flaw that enabled local attackers to access sensitive data without authentication, posing a high risk to the DIB. This vulnerability was actively exploited in the wild, indicating a severe breach of trust and security.
Shame score — Critical vulnerability actively exploited in the wild with no patch available, leading to unauthorized access to sensitive user information.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Apple iOS, iPadOS, and macOS contain an unspecified vulnerability involving input validation which can allow a local attacker to view sensitive user information.