---
cve: "CVE-2023-23499"
severity: "LOW"
cvss: 3.1
epss: "38%"
vendor: "Apple"
kev: false
exploited: false
published: "2023-02-27 20:15:13"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-12T18:38:51+02:00"
---

# CVE-2023-23499

> 3.1 LOW

## Beschreibung

This issue was addressed by enabling hardened runtime. This issue is fixed in macOS Monterey 12.6.3, macOS Ventura 13.2, watchOS 9.3, macOS Big Sur 11.7.3, tvOS 16.3, iOS 16.3 and iPadOS 16.3. An app may be able to access user-sensitive data.

## CVSS-Vektor

```
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Lokal | good |
| AC Komplexität | Gering | bad |
| PR Privilegien | Keine | bad |
| UI Interaktion | Erforderlich | good |
| S Scope | Unverändert | good |
| C Vertraulichkeit | Hoch | bad |
| I Integrität | Keine | good |
| A Verfügbarkeit | Keine | good |

## Referenzen

- <https://support.apple.com/en-us/HT213606>
- <https://support.apple.com/en-us/HT213601>
- <https://support.apple.com/en-us/HT213603>
- <https://support.apple.com/en-us/HT213605>
- <https://support.apple.com/en-us/HT213604>
- <https://support.apple.com/en-us/HT213599>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2023-23499) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
