VulnerabilityModified
CVE-2021-30913
The issue was addressed with improved permissions logic.
MEDIUM 5.5EPSS 1.59%
Does this matter?
Lower severity and a low EPSS score (1.59%). Track it; it rarely justifies an emergency change on its own.
Description
The issue was addressed with improved permissions logic. This issue is fixed in macOS Monterey 12.0.1, macOS Big Sur 11.6.1. An unprivileged application may be able to edit NVRAM variables.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
- EPSS
- 1.59% probability · 74th percentile
- CISA KEV
- Not listed
- Affected
- apple/mac os x · apple/macos
- Source
- product-security@apple.com
References
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.