cbcvebase.
CVE-2024-23277
published 2024-03-08

CVE-2024-23277: The issue was addressed with improved checks. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4. An attacker in a privileged network position…

PriorityP429medium5.9CVSS 3.1
AVNACHPRNUINSUCNIHAN
EPSS
0.71%
49.5th percentile
The issue was addressed with improved checks. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4. An attacker in a privileged network position may be able to inject keystrokes by spoofing a keyboard.

Affected

7 ranges
VendorProductVersion rangeFixed in
appleios_17.4_and_ipados
appleios_and_ipados< 17.417.4
appleipad_os< 17.417.4
appleiphone_os>= 17.0 < 17.417.4
applemacos< 14.414.4
applemacos>= 14.0 < 14.414.4
applemacos_sonoma
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.