Impact
A flaw in Microsoft Defender for Endpoint for Mac allows an authorized attacker to expose sensitive local information. The vulnerability is classified as an information disclosure weakness (CWE-200) and can compromise confidentiality if an attacker gains access to the local environment. Developers and administrators should recognize that the exposure does not enable remote code execution or elevation, but it permits retrieval of data that should remain confidential.
Affected Systems
The affected product is Microsoft Defender for Endpoint for Mac. No specific affected releases or version numbers are provided in the advisory, so any deployment that has not been updated to the latest release may be vulnerable.
Risk and Exploitability
The CVSS score of 5.5 reflects a moderate impact, while the EPSS score of less than 1 % indicates a low probability of exploitation. The vulnerability is not listed in CISA’s KEV catalog. Based on the description, the likely attack vector is local – an attacker with authorized user privileges on the device could exploit the flaw. Although exploitation conditions are minimal, the affected information may remain within the local scope.
OpenCVE Enrichment