CVE-2024-54530

The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2, watchOS 11.2, visionOS 2.2, iOS 18.2 and iPadOS 18.2. Password autofill may fill in passwords after failing authentication.
References
Link Resource
https://support.apple.com/en-us/121837 Release Notes Vendor Advisory
https://support.apple.com/en-us/121839 Release Notes Vendor Advisory
https://support.apple.com/en-us/121843 Release Notes Vendor Advisory
https://support.apple.com/en-us/121845 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

04 Apr 2025, 18:14

Type Values Removed Values Added
References () https://support.apple.com/en-us/121837 - () https://support.apple.com/en-us/121837 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/121839 - () https://support.apple.com/en-us/121839 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/121843 - () https://support.apple.com/en-us/121843 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/121845 - () https://support.apple.com/en-us/121845 - Release Notes, Vendor Advisory
First Time Apple iphone Os
Apple ipados
Apple watchos
Apple visionos
Apple
Apple macos
CPE cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

18 Mar 2025, 21:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1
CWE CWE-863

18 Feb 2025, 20:15

Type Values Removed Values Added
CWE CWE-862
CVSS v2 : unknown
v3 : 9.1
v2 : unknown
v3 : unknown

28 Jan 2025, 16:15

Type Values Removed Values Added
CWE CWE-862
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1
Summary
  • (es) El problema se solucionó con comprobaciones mejoradas. Este problema se solucionó en macOS Sequoia 15.2, watchOS 11.2, visionOS 2.2, iOS 18.2 y iPadOS 18.2. La función de autocompletar contraseñas puede completar las contraseñas después de una autenticación fallida.

27 Jan 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-27 22:15

Updated : 2025-04-04 18:14


NVD link : CVE-2024-54530

Mitre link : CVE-2024-54530

CVE.ORG link : CVE-2024-54530


JSON object : View

Products Affected

apple

  • macos
  • visionos
  • ipados
  • watchos
  • iphone_os
CWE
CWE-863

Incorrect Authorization