PT-2022-18030 · Apple · Tvos
Jorge A. Caballero
·
Published
2022-05-26
·
Updated
2022-06-03
·
CVE-2022-26724
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Apple tvOS versions prior to 15.5
Description
An authentication issue was addressed with improved state management, allowing a local user to potentially enable iCloud Photos without authentication.
Recommendations
For versions prior to 15.5, update to tvOS 15.5 to resolve the issue.
Fix
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Tvos