AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2017-7143

MEDIUM · CVSS 5.5 EPSS 0.33%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-10-23 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.5. It may be remotely exploitable.

CVE
CVE-2017-7143
Severity
MEDIUM
CVSS
5.5
EPSS
0.33%

Original NVD Description

An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "Captive Network Assistant" component. It allows remote attackers to discover cleartext passwords in opportunistic circumstances by sniffing the network during use of the captive portal browser, which has a UI error that can lead to cleartext transmission without the user's awareness.

Related CVEs

Other vulnerabilities affecting the same vendor(s)