Apple macOS

•

severity

10.0

published

An authentication state-management flaw in macOS Screen Sharing can allow a remote attacker to establish a session without valid credentials. Bynario demonstrated that the resulting unauthorized session could be chained with privileged Screen Sharing file-copy behavior to achieve remote root command execution.

Exploitation requires Screen Sharing to be enabled.

Apple fixed the issue through improved state management in macOS Sonoma 14.8.9, macOS Sequoia 15.7.9, and macOS Tahoe 26.6.1. NVD classifies it as CWE-287.


References

CVSS v3.1

10.0

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

CVSS v3.1

10.0

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

CVSS v3.1

10.0

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

S8tJa&rUtR  l#oIo7kNiVnXgY  aPtS  y0oTuIrY  s6o0fFtMwAa9rOeM  cJrCiRt%i1c7a%lBlZy$.I

request briefing

request briefing

SNtBaGrFtK  l5o6oUkGiInHgL  a3t@  yVoCuArM  sVoWf9tDw4a1r2e%  c@rKi4t8iEc5a&l&lFyT.R

request briefing

request briefing

SFtHa1rDtQ  l9oLoIkXiLn1g4  a4tU  y4oHu$r$  s$oMf6tXw&aWr@e4  cCrBiPtEi$cEa1lCl7y$.9

request briefing

request briefing

BYNARIO s.r.l. | PIAZZA BORROMEO 12, 20129 MILAN, ITALY | VAT- IT14434720968

all rights reserved

2026

BYNARIO s.r.l. | PIAZZA BORROMEO 12, 20129 MILAN, ITALY | VAT- IT14434720968

all rights reserved

2026

BYNARIO s.r.l. | PIAZZA BORROMEO 12, 20129 MILAN, ITALY | VAT- IT14434720968

all rights reserved

2026