CVE-2023-40417
published 2023-09-27CVE-2023-40417: A window management issue was addressed with improved state management. This issue is fixed in Safari 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14…
PriorityP425medium5.4CVSS 3.1
AVNACLPRNUIRSUCLILAN
EPSS
0.81%
52.9th percentile
A window management issue was addressed with improved state management. This issue is fixed in Safari 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. Visiting a website that frames malicious content may lead to UI spoofing.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_17_and_ipados | — | — |
| apple | ios_and_ipados | >= unspecified < 17 | 17 |
| apple | ipados | < 17.0 | 17.0 |
| apple | iphone_os | < 17.0 | 17.0 |
| apple | macos | < 14.0 | 14.0 |
| apple | macos | >= unspecified < 14 | 14 |
| apple | macos_sonoma | — | — |
| apple | safari | < 17.0 | 17.0 |
| apple | safari | — | — |
| apple | safari | >= unspecified < 17 | 17 |
| apple | watchos | < 10.0 | 10.0 |
| apple | watchos | — | — |
| apple | watchos | >= unspecified < 10 | 10 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2023-40417: macOS Sonoma 14
vendor_apple·2023-09-26·CVSS 5.4
CVE-2023-40417 [MEDIUM] CVE-2023-40417: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-40417
Component: Safari
Impact: Visiting a website that frames malicious content may lead to UI spoofing
Description: A window management issue was addressed with improved state management.
Apple
CVE-2023-40417: Safari 17
vendor_apple·2023-09-26·CVSS 5.4
CVE-2023-40417 [MEDIUM] CVE-2023-40417: Safari 17
Apple Security Update: About the security content of Safari 17
Product: Safari
Version: 17
CVE: CVE-2023-40417
Component: Safari
Impact: Visiting a website that frames malicious content may lead to UI spoofing
Description: A window management issue was addressed with improved state management.
Apple
CVE-2023-40417: iOS 17 and iPadOS 17
vendor_apple·2023-09-18·CVSS 5.4
CVE-2023-40417 [MEDIUM] CVE-2023-40417: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40417
Component: Safari
Impact: Visiting a website that frames malicious content may lead to UI spoofing
Description: A window management issue was addressed with improved state management.
Apple
CVE-2023-40417: watchOS 10
vendor_apple·2023-09-18·CVSS 5.4
CVE-2023-40417 [MEDIUM] CVE-2023-40417: watchOS 10
Apple Security Update: About the security content of watchOS 10
Product: watchOS
Version: 10
CVE: CVE-2023-40417
Component: Safari
Impact: Visiting a website that frames malicious content may lead to UI spoofing
Description: A window management issue was addressed with improved state management.
GHSA
GHSA-w477-vjwg-hjjx: A window management issue was addressed with improved state management
ghsa_unreviewed·2023-09-27
CVE-2023-40417 [MEDIUM] GHSA-w477-vjwg-hjjx: A window management issue was addressed with improved state management
A window management issue was addressed with improved state management. This issue is fixed in Safari 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. Visiting a website that frames malicious content may lead to UI spoofing.
Suricata
ET WEB_SPECIFIC_APPS Tenda SetIpMacBind Multiple Parameters Buffer Overflow Attempt (CVE-2025-15216, CVE-2025-9089, CVE-2025-1853, CVE-2024-40417, CVE-2023-41556, CVE-2023-40902, CVE-2023-40896)
suricata·2025-10-10·CVSS 9.8
CVE-2023-40902 [CRITICAL] ET WEB_SPECIFIC_APPS Tenda SetIpMacBind Multiple Parameters Buffer Overflow Attempt (CVE-2025-15216, CVE-2025-9089, CVE-2025-1853, CVE-2024-40417, CVE-2023-41556, CVE-2023-40902, CVE-2023-40896)
ET WEB_SPECIFIC_APPS Tenda SetIpMacBind Multiple Parameters Buffer Overflow Attempt (CVE-2025-15216, CVE-2025-9089, CVE-2025-1853, CVE-2024-40417, CVE-2023-41556, CVE-2023-40902, CVE-2023-40896)
Rule: alert http any any -> $HOME_NET any (msg:"ET WEB_SPECIFIC_APPS Tenda SetIpMacBind Multiple Parameters Buffer Overflow Attempt (CVE-2025-15216, CVE-2025-9089, CVE-2025-1853, CVE-2024-40417, CVE-2023-41556, CVE-2023-40902, CVE-2023-40896)"; flow:established,to_server; http.method; content:"POST"; http.uri; bsize:20; content:"/goform/SetIpMacBind"; fast_pattern; http.request_body; pcre:"/(?:list|component|bindnum)\x3d[^&]{100,}(?:&|$)/"; reference:cve,2023-40902; reference:cve,2025-9089; reference:cve,2025-1853; reference:url,github.com/peris-navince/founded-0-days/blob/main/Tenda/ac10/SetIpMac
No public exploits indexed.
No writeups or analysis indexed.
http://seclists.org/fulldisclosure/2023/Oct/2http://seclists.org/fulldisclosure/2023/Oct/3http://seclists.org/fulldisclosure/2023/Oct/8http://seclists.org/fulldisclosure/2023/Oct/9https://support.apple.com/en-us/HT213937https://support.apple.com/en-us/HT213938https://support.apple.com/en-us/HT213940https://support.apple.com/en-us/HT213941http://seclists.org/fulldisclosure/2023/Oct/2http://seclists.org/fulldisclosure/2023/Oct/3http://seclists.org/fulldisclosure/2023/Oct/8http://seclists.org/fulldisclosure/2023/Oct/9https://support.apple.com/en-us/HT213937https://support.apple.com/en-us/HT213938https://support.apple.com/en-us/HT213940https://support.apple.com/en-us/HT213941https://support.apple.com/kb/HT213937https://support.apple.com/kb/HT213938https://support.apple.com/kb/HT213941
2023-09-27
Published