CVE-2024-23219

MEDIUM

iPadOS < 17.3 - Improper Authentication

Title source: llm
STIX 2.1

Description

The issue was addressed with improved authentication. This issue is fixed in iOS 17.3 and iPadOS 17.3. Stolen Device Protection may be unexpectedly disabled.

References (4)

Core 4

Scores

CVSS v3 6.2
EPSS 0.0011
EPSS Percentile 28.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-287
Status published
Products (3)
Apple/iOS and iPadOS < 17.3
apple/ipados < 17.3
apple/iphone_os < 17.3
Published Jan 23, 2024
Tracked Since Feb 18, 2026