CVE-2024-40797
Apple
CVE-2024-40797 is a user interface spoofing vulnerability affecting macOS Ventura 13.7, macOS Sonoma 14.7, and macOS Sequoia 15. By visiting a malicious website, attackers can exploit this flaw to mislead users. The issue has been addressed through improved state management in the patched versions. While the CVSS score is 6.1, indicating a medium severity, the SOCRadar Vulnerability Risk Score (SVRS) is 58, suggesting a moderate level of risk. Although not critical (SVRS > 80), this CVE can still be exploited to trick users into performing actions they wouldn't normally, like entering credentials on a fake login page. Prompt patching is recommended to mitigate potential security risks. This vulnerability highlights the importance of staying up to date with the latest security updates.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.