CVE-2020-9986 describes a file access vulnerability in macOS Catalina 10.15.7 and earlier, where a malicious application could read sensitive location information from certain home folder files due to insufficient access restrictions. This is a low-severity vulnerability with a CVSS score of 3.3, requiring user interaction (UI:R) for exploitation, and primarily impacting confidentiality (C:L) without affecting integrity or availability. There is no evidence of active exploitation, public exploit code, or significant community discussion, with only one article and one community mention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 10.15.7CPE matchmatch criteria | cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.0 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.