CVE-2018-4478

A validation issue was addressed with improved logic. This issue is fixed in macOS High Sierra 10.13.5, Security Update 2018-003 Sierra, Security Update 2018-003 El Capitan. An attacker with physical access to a device may be able to elevate privileges.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.8 MEDIUM
PHYSICAL
LOW
NONE
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
appleCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 12%
VendorProductVersion
applemac_os_x
𝑥
< 10.13.5
applemac_os_x
10.11 ≤
𝑥
< 10.11.6
applemac_os_x
10.12 ≤
𝑥
< 10.12.6
applemac_os_x
10.11.6
applemac_os_x
10.11.6:security_update_2016-001
applemac_os_x
10.11.6:security_update_2016-002
applemac_os_x
10.11.6:security_update_2016-003
applemac_os_x
10.11.6:security_update_2017-001
applemac_os_x
10.11.6:security_update_2017-002
applemac_os_x
10.11.6:security_update_2017-003
applemac_os_x
10.11.6:security_update_2017-004
applemac_os_x
10.11.6:security_update_2017-005
applemac_os_x
10.11.6:security_update_2018-001
applemac_os_x
10.11.6:security_update_2018-002
applemac_os_x
10.12.6
applemac_os_x
10.12.6:security_update_2017-001
applemac_os_x
10.12.6:security_update_2017-002
applemac_os_x
10.12.6:security_update_2018-001
applemac_os_x
10.12.6:security_update_2018-002
𝑥
= Vulnerable software versions