Apple macOS Privilege Escalation Vulnerability in AccountPolicy Component

Vulnerability

A vulnerability allowing a malicious application to gain root privileges has been identified in the AccountPolicy component of Apple macOS. This issue affects multiple versions of macOS, including Ventura 13.7.5, Sequoia 15.4, and Sonoma 14.7.5. The vulnerability was introduced by a logic error in the handling of directory paths, which could be exploited by applications to escalate privileges.

Impact

Exploitation of this vulnerability allows a malicious app to gain root privileges, potentially leading to unauthorized access and modification of system files and settings.

Remediation

Users can update to macOS Ventura 13.7.5, macOS Sequoia 15.4, or macOS Sonoma 14.7.5 to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
7.5
exploitability
4.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.