Vulnerabilities > CVE-2023-32394 - Exposure of Resource to Wrong Sphere vulnerability in Apple products

047910
CVSS 2.4 - LOW
Attack vector
PHYSICAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
LOW
Integrity impact
NONE
Availability impact
NONE
low complexity
apple
CWE-668

Summary

The issue was addressed with improved checks. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, tvOS 16.5, macOS Ventura 13.4. A person with physical access to a device may be able to view contact information from the lock screen.

Vulnerable Configurations

Part Description Count
OS
Apple
459

Common Weakness Enumeration (CWE)