VendorsApplemac_os_x10.13.0
Vulnerabilities

Apple Mac OS X 10.13.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2017-13872
An issue was discovered in certain Apple products. macOS High Sierra before Security Update 2017-001 is affected. The issue involves the "Directory Utility" component. It allows attackers to obtain administrator access without a password via certain interactions involving entry of the root user name.
Published 2017-11-29 · Modified
9.32 PoCEPSS 0.368
CVE-2017-13827
An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "kext tools" component. It allows attackers to execute arbitrary code in a privileged context via a crafted app that performs kext loading.
Published 2018-04-03 · Modified
9.3EPSS 0.012
CVE-2017-13837
An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "Installer" component. It does not properly restrict an app's entitlements for accessing the FileVault unlock key.
Published 2018-04-03 · Modified
7.5EPSS 0.009
CVE-2017-13851
An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "DesktopServices" component. It allows local users to bypass intended access restrictions on home folder files.
Published 2018-04-03 · Modified
5.5EPSS 0.003
CVE-2017-13839
An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "Spotlight" component. It allows local users to see results for other users' files.
Published 2018-04-03 · Modified
5.5EPSS 0.003