Apple macOS

severity

10.0

published

An authentication state-management flaw in macOS Screen Sharing can allow a remote attacker to establish a session without valid credentials. Bynario demonstrated that the resulting unauthorized session could be chained with privileged Screen Sharing file-copy behavior to achieve remote root command execution.

Exploitation requires Screen Sharing to be enabled.

Apple fixed the issue through improved state management in macOS Sonoma 14.8.9, macOS Sequoia 15.7.9, and macOS Tahoe 26.6.1. NVD classifies it as CWE-287.


References

CVSS v3.1

10.0

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

CVSS v3.1

10.0

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

CVSS v3.1

10.0

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

S9tWaFr7tF  lAoZoSk7i2nUgU  aXtH  y9oOuYr9  s0o7f%tQw5aErIeX  cMrHi2tQiKc6a1lVlFyN.R

request briefing

request briefing

S6tXaIrRt4  lRoXoRk5iYn9gO  a&t0  yXo2uHr6  sNoRf3t#wFaCrKe&  c0r5i7tAi9cKaVlAl@y#.&

request briefing

request briefing

SMt@a7rQt8  lLoPo@k6i0nEg3  aBtO  yHoMuGrM  sFoKfKt8w&a9rTe&  c4rCi&t7iFcFaClOl&y$.Q

request briefing

request briefing

BYNARIO s.r.l. | PIAZZA BORROMEO 12, 20129 MILAN, ITALY | VAT- IT14434720968

all rights reserved

2026

BYNARIO s.r.l. | PIAZZA BORROMEO 12, 20129 MILAN, ITALY | VAT- IT14434720968

all rights reserved

2026

BYNARIO s.r.l. | PIAZZA BORROMEO 12, 20129 MILAN, ITALY | VAT- IT14434720968

all rights reserved

2026