Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2017-13872Improper Authentication in Apple Macos High Sierra 10.13.2 Security Update 2017-002 Sierra AND Security Update 20

Severity
8.1HIGHNVD
EPSS
76.7%
top 1.05%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedNov 29
Latest updateMay 14

Description

An issue was discovered in certain Apple products. macOS High Sierra before Security Update 2017-001 is affected. The issue involves the "Directory Utility" component. It allows attackers to obtain administrator access without a password via certain interactions involving entry of the root user name.

CVSS vector

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 2.2 | Impact: 5.9

🔴Vulnerability Details

1
GHSA
GHSA-69wx-h62r-474c: An issue was discovered in certain Apple products2022-05-14

💥Exploits & PoCs

4
Exploit-DB
Apple macOS 10.13.1 (High Sierra) - 'Blank Root' Local Privilege Escalation (Metasploit)2017-11-30
Exploit-DB
Apple macOS 10.13.1 (High Sierra) - 'Blank Root' Local Privilege Escalation2017-11-28
Metasploit
Mac OS X Root Privilege Escalation
Metasploit
Apple Remote Desktop Root Vulnerability

📋Vendor Advisories

2
Apple
CVE-2017-13872: macOS High Sierra 10.13.2, Security Update 2017-002 Sierra, and Security Update 2017-005 El Capitan2017-12-06
Apple
CVE-2017-13872: Security Update 2017-0012017-11-29

🕵️Threat Intelligence

2
Tenable
Detecting macOS High Sierra root account vulnerability (CVE-2017-13872)2017-11-29
Tenable
Detecting macOS High Sierra root account vulnerability (CVE-2017-13872)2017-11-29