CVE-2017-13892 addresses a vulnerability in macOS High Sierra, Sierra, and El Capitan related to contact sharing, where improper handling of user information could lead to unexpected data sharing. This vulnerability carries a CVSS score of 7.5 (High), indicating a network-exploitable issue with low attack complexity and high confidentiality impact, but no integrity or availability impact. Despite its high severity, there is no evidence of active exploitation, publicly available exploit code, or significant community discussion or media coverage, suggesting a low current threat landscape.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 10.11, < 10.11.6CPE matchmatch criteria | cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:* | ||
>= 10.12, < 10.12.6CPE matchmatch criteria | cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:* | ||
10.11.6CPE matchmatch criteria | cpe:2.3:o:apple:mac_os_x:10.11.6:-:*:*:*:*:*:* | ||
10.11.6CPE matchmatch criteria | cpe:2.3:o:apple:mac_os_x:10.11.6:security_update_2016-001:*:*:*:*:*:* | ||
10.11.6CPE matchmatch criteria | cpe:2.3:o:apple:mac_os_x:10.11.6:security_update_2016-002:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.