CVE-2020-9801
CVE-2020-9801
Vexday Risk Score
18Low
SSVC decision (CISA)
Attend
PoC available → attend closely
CVSS —EPSS 1.4%KEV nãoPoC —Nuclei —Metasploit simPatch —
Lifecycle
18 Mar 2020Metasploit module available
09 Jun 2020Published on NVD
Recommendation: Plan a near-term fix — a public PoC already exists.
A logic issue was addressed with improved restrictions. This issue is fixed in Safari 13.1.1. A malicious process may cause Safari to launch an application.
Affected products
Apple · SafariWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://support.apple.com/HT211177