CISA Known Exploited Vulnerability

CVE-2015-1130

Apple · OS X

Apple OS X Authentication Bypass Vulnerability

Date added
BOD 22-01 due date
CWE CWE-254
Ransomware Unknown

CISA description

The XPC implementation in Admin Framework in Apple OS X before 10.10.3 allows local users to bypass authentication and obtain admin privileges.

Required action

Apply updates per vendor instructions.