CVE-2025-24271
MEDIUMiPadOS < 17.7.6 - Unauthenticated AirPlay Command Execution via Network Access
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2025-24271. PoCs published by moften.
AI-analyzed exploit summary This PoC exploits CVE-2025-24271 by sending a fake AirPlay request to vulnerable Apple devices, potentially exposing sensitive information. It uses mDNS (Bonjour) to discover AirPlay devices and sends a crafted HTTP request to trigger the vulnerability.
Description
An access issue was addressed with improved access restrictions. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.4, visionOS 2.4. An unauthenticated user on the same network as a signed-in Mac could send it AirPlay commands without pairing.
Exploits (1)
This PoC exploits CVE-2025-24271 by sending a fake AirPlay request to vulnerable Apple devices, potentially exposing sensitive information. It uses mDNS (Bonjour) to discover AirPlay devices and sends a crafted HTTP request to trigger the vulnerability.
References (7)
Scores
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N