cbcvebase.
CVE-2022-32857
published 2022-08-24

CVE-2022-32857: This issue was addressed by using HTTPS when sending information over the network. This issue is fixed in macOS Monterey 12.5, macOS Big Sur 11.6.8, Security…

PriorityP418medium4.3CVSS 3.1
AVAACLPRNUINSUCLINAN
EPSS
0.24%
14.9th percentile
This issue was addressed by using HTTPS when sending information over the network. This issue is fixed in macOS Monterey 12.5, macOS Big Sur 11.6.8, Security Update 2022-005 Catalina, iOS 15.6 and iPadOS 15.6, tvOS 15.6, watchOS 8.7. A user in a privileged network position can track a user’s activity.

Affected

21 ranges
VendorProductVersion rangeFixed in
appleios_15.6_and_ipados
appleipados< 15.615.6
appleiphone_os< 15.615.6
applemac_os_x
applemacos< 10.15.710.15.7
applemacos
applemacos>= 11.0 < 11.6.811.6.8
applemacos>= 12.0 < 12.512.5
applemacos>= unspecified < 12.512.5
applemacos>= unspecified < 11.611.6
applemacos>= unspecified < 20222022
applemacos_big_sur
applemacos_monterey
applesecurity_update_2022-005_catalina
appletvos< 15.615.6
appletvos
appletvos>= unspecified < 15.615.6
applewatchos< 8.78.7
applewatchos
applewatchos>= unspecified < 8.78.7
applewatchos>= unspecified < 15.615.6
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.