Medium severity5.9NVD Advisory· Published May 22, 2017· Updated May 13, 2026
CVE-2017-6988
CVE-2017-6988
Description
An issue was discovered in certain Apple products. macOS before 10.12.5 is affected. The issue involves the "802.1X" component. It allows remote attackers to discover the network credentials of arbitrary users by operating a crafted network that requires 802.1X authentication, because EAP-TLS certificate validation mishandles certificate changes.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- support.apple.com/HT207797nvdVendor Advisory
- www.securitytracker.com/id/1038484nvd
News mentions
0No linked articles in our index yet.