CVE-2020-10002

A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 14.2 and iPadOS 14.2, iCloud for Windows 11.5, tvOS 14.2, iTunes 12.11 for Windows. A local user may be able to read arbitrary files.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
appleCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 31%
VendorProductVersion
appleicloud
𝑥
< 11.5
appleitunes
𝑥
< 12.11
appleipados
𝑥
< 14.2
appleiphone_os
𝑥
< 14.2
applemac_os_x
𝑥
< 11.0.1
applemac_os_x
10.14 ≤
𝑥
< 10.14.6
applemac_os_x
10.15 ≤
𝑥
< 10.15.7
applemac_os_x
10.14.6
applemac_os_x
10.14.6:security_update_2019-001
applemac_os_x
10.14.6:security_update_2019-002
applemac_os_x
10.14.6:security_update_2019-004
applemac_os_x
10.14.6:security_update_2019-005
applemac_os_x
10.14.6:security_update_2019-006
applemac_os_x
10.14.6:security_update_2019-007
applemac_os_x
10.14.6:security_update_2020-001
applemac_os_x
10.14.6:security_update_2020-002
applemac_os_x
10.14.6:security_update_2020-003
applemac_os_x
10.14.6:security_update_2020-004
applemac_os_x
10.14.6:security_update_2020-005
applemac_os_x
10.14.6:security_update_2020-006
applemac_os_x
10.15.7
applemac_os_x
10.15.7:security_update_2020
appletvos
𝑥
< 14.2
applewatchos
𝑥
< 7.1
𝑥
= Vulnerable software versions