
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2020-29633 is an authentication vulnerability affecting macOS Big Sur 11.0.1 that was discovered by Jewel Lambert of Original Spin, LLC. The vulnerability was disclosed and patched in February 2021. The issue affected the Login Window component of macOS and allowed an attacker in a privileged network position to potentially bypass authentication policy (Apple Support).
The vulnerability was identified as an authentication issue in the Login Window component. The root cause was related to state management problems that could allow authentication policy bypass. Apple addressed this security issue by implementing improved state management controls (Apple Support).
An attacker in a privileged network position could potentially bypass authentication policy, which could compromise system security by allowing unauthorized access (Apple Support).
The vulnerability required the attacker to be in a privileged network position to exploit. The vulnerability was patched in macOS Big Sur 11.2, Security Update 2021-001 Catalina, and Security Update 2021-001 Mojave (Apple Support).
Apple addressed this vulnerability by releasing security updates in macOS Big Sur 11.2, Security Update 2021-001 Catalina, and Security Update 2021-001 Mojave. Users should install these updates to protect their systems (Apple Support).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."