The issue was addressed with additional permissions checks. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4, iOS 15.7.4 and iPadOS 15.7.4, macOS Monterey 12.6.4, tvOS 16.4, watchOS 9.4. A shortcut may be able to use sensitive data with certain actions without prompting the user.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-31689 | The issue was addressed with additional permissions checks. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4, iOS 15.7.4 and iPadOS 15.7.4, macOS Monterey 12.6.4, tvOS 16.4, watchOS 9.4. A shortcut may be able to use sensitive data with certain actions without prompting the user. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 29 Jan 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-862 | |
| Metrics |
ssvc
|
Thu, 12 Dec 2024 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple ipados
|
|
| CPEs | cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Apple ipad Os
|
Apple ipados
|
Status: PUBLISHED
Assigner: apple
Published:
Updated: 2025-01-29T19:29:10.470Z
Reserved: 2023-03-08T00:00:00.000Z
Link: CVE-2023-27963
Updated: 2024-08-02T12:23:30.586Z
Status : Modified
Published: 2023-05-08T20:15:18.773
Modified: 2025-01-29T20:15:30.770
Link: CVE-2023-27963
No data.
OpenCVE Enrichment
No data.
EUVD