CVE-2024-54530

The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2, watchOS 11.2, visionOS 2.2, iOS 18.2 and iPadOS 18.2. Password autofill may fill in passwords after failing authentication.
References
Link Resource
https://support.apple.com/en-us/121837 Release Notes Vendor Advisory
https://support.apple.com/en-us/121839 Release Notes Vendor Advisory
https://support.apple.com/en-us/121843 Release Notes Vendor Advisory
https://support.apple.com/en-us/121845 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

04 Apr 2025, 18:14

Type Values Removed Values Added
First Time Apple visionos
Apple macos
Apple iphone Os
Apple watchos
Apple
Apple ipados
CPE cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
References () https://support.apple.com/en-us/121837 - () https://support.apple.com/en-us/121837 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/121839 - () https://support.apple.com/en-us/121839 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/121843 - () https://support.apple.com/en-us/121843 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/121845 - () https://support.apple.com/en-us/121845 - Release Notes, Vendor Advisory

18 Mar 2025, 21:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1
CWE CWE-863

18 Feb 2025, 20:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 9.1
v2 : unknown
v3 : unknown
CWE CWE-862

28 Jan 2025, 16:15

Type Values Removed Values Added
Summary
  • (es) El problema se solucionó con comprobaciones mejoradas. Este problema se solucionó en macOS Sequoia 15.2, watchOS 11.2, visionOS 2.2, iOS 18.2 y iPadOS 18.2. La función de autocompletar contraseñas puede completar las contraseñas después de una autenticación fallida.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1
CWE CWE-862

27 Jan 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-27 22:15

Updated : 2025-04-04 18:14


NVD link : CVE-2024-54530

Mitre link : CVE-2024-54530

CVE.ORG link : CVE-2024-54530


JSON object : View

Products Affected

apple

  • watchos
  • iphone_os
  • visionos
  • ipados
  • macos
CWE
CWE-863

Incorrect Authorization