ID

VAR-202302-1861


CVE

CVE-2022-46723


TITLE

apple's  macOS  Vulnerability in

Trust: 0.8

sources: JVNDB: JVNDB-2022-020469

DESCRIPTION

This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.6.1, macOS Big Sur 11.7.1. A remote user may be able to write arbitrary files. apple's macOS Exists in unspecified vulnerabilities.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state

Trust: 1.8

sources: NVD: CVE-2022-46723 // JVNDB: JVNDB-2022-020469 // VULHUB: VHN-447297 // VULMON: CVE-2022-46723

AFFECTED PRODUCTS

vendor:applemodel:macosscope:ltversion:12.6.1

Trust: 1.0

vendor:applemodel:macosscope:gteversion:12.0.0

Trust: 1.0

vendor:applemodel:macosscope:gteversion:11.0

Trust: 1.0

vendor:applemodel:macosscope:ltversion:11.7.1

Trust: 1.0

vendor:アップルmodel:macosscope:eqversion:11.0 that's all 11.7.1

Trust: 0.8

vendor:アップルmodel:macosscope:eqversion: -

Trust: 0.8

vendor:アップルmodel:macosscope:eqversion:12.0.0 that's all 12.6.1

Trust: 0.8

sources: JVNDB: JVNDB-2022-020469 // NVD: CVE-2022-46723

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2022-46723
value: CRITICAL

Trust: 1.0

NVD: CVE-2022-46723
value: CRITICAL

Trust: 0.8

CNNVD: CNNVD-202302-2144
value: CRITICAL

Trust: 0.6

nvd@nist.gov: CVE-2022-46723
baseSeverity: CRITICAL
baseScore: 9.8
vectorString: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 3.9
impactScore: 5.9
version: 3.1

Trust: 1.0

NVD: CVE-2022-46723
baseSeverity: CRITICAL
baseScore: 9.8
vectorString: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: JVNDB: JVNDB-2022-020469 // CNNVD: CNNVD-202302-2144 // NVD: CVE-2022-46723

PROBLEMTYPE DATA

problemtype:NVD-CWE-noinfo

Trust: 1.0

problemtype:Lack of information (CWE-noinfo) [NVD evaluation ]

Trust: 0.8

sources: JVNDB: JVNDB-2022-020469 // NVD: CVE-2022-46723

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-202302-2144

TYPE

other

Trust: 0.6

sources: CNNVD: CNNVD-202302-2144

PATCH

title:HT213493 Apple  Security updateurl:https://support.apple.com/en-us/HT213493

Trust: 0.8

title:Apple macOS Security vulnerabilitiesurl:http://123.124.177.30/web/xxk/bdxqById.tag?id=228165

Trust: 0.6

sources: JVNDB: JVNDB-2022-020469 // CNNVD: CNNVD-202302-2144

EXTERNAL IDS

db:NVDid:CVE-2022-46723

Trust: 3.4

db:JVNDBid:JVNDB-2022-020469

Trust: 0.8

db:CNNVDid:CNNVD-202302-2144

Trust: 0.6

db:VULHUBid:VHN-447297

Trust: 0.1

db:VULMONid:CVE-2022-46723

Trust: 0.1

sources: VULHUB: VHN-447297 // VULMON: CVE-2022-46723 // JVNDB: JVNDB-2022-020469 // CNNVD: CNNVD-202302-2144 // NVD: CVE-2022-46723

REFERENCES

url:https://support.apple.com/en-us/ht213493

Trust: 1.8

url:https://support.apple.com/en-us/ht213494

Trust: 1.8

url:https://nvd.nist.gov/vuln/detail/cve-2022-46723

Trust: 0.8

url:https://cxsecurity.com/cveshow/cve-2022-46723/

Trust: 0.6

url:https://nvd.nist.gov

Trust: 0.1

sources: VULHUB: VHN-447297 // VULMON: CVE-2022-46723 // JVNDB: JVNDB-2022-020469 // CNNVD: CNNVD-202302-2144 // NVD: CVE-2022-46723

SOURCES

db:VULHUBid:VHN-447297
db:VULMONid:CVE-2022-46723
db:JVNDBid:JVNDB-2022-020469
db:CNNVDid:CNNVD-202302-2144
db:NVDid:CVE-2022-46723

LAST UPDATE DATE

2024-08-14T14:36:59.442000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-447297date:2023-03-08T00:00:00
db:VULMONid:CVE-2022-46723date:2023-02-27T00:00:00
db:JVNDBid:JVNDB-2022-020469date:2023-11-02T02:30:00
db:CNNVDid:CNNVD-202302-2144date:2023-03-09T00:00:00
db:NVDid:CVE-2022-46723date:2023-03-08T19:05:39.457

SOURCES RELEASE DATE

db:VULHUBid:VHN-447297date:2023-02-27T00:00:00
db:VULMONid:CVE-2022-46723date:2023-02-27T00:00:00
db:JVNDBid:JVNDB-2022-020469date:2023-11-02T00:00:00
db:CNNVDid:CNNVD-202302-2144date:2023-02-27T00:00:00
db:NVDid:CVE-2022-46723date:2023-02-27T20:15:13.020