Medium severity5.5NVD Advisory· Published Oct 23, 2017· Updated May 13, 2026
CVE-2017-7143
CVE-2017-7143
Description
An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "Captive Network Assistant" component. It allows remote attackers to discover cleartext passwords in opportunistic circumstances by sniffing the network during use of the captive portal browser, which has a UI error that can lead to cleartext transmission without the user's awareness.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.securityfocus.com/bid/100993nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1039427nvdThird Party AdvisoryVDB Entry
- support.apple.com/HT208144nvdVendor Advisory
News mentions
0No linked articles in our index yet.