CVE-2023-28182 - CVE House
Back to Database
Status published Unknown CVE-2023-28182

The issue was addressed with improved authentication. This issue is...

Vulnerability Description

The issue was addressed with improved authentication. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4, iOS 15.7.4 and iPadOS 15.7.4, macOS Monterey 12.6.4, macOS Big Sur 11.7.5. A user in a privileged network position may be able to spoof a VPN server that is configured with EAP-only authentication on a device.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-28182

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

macOS, iOS and iPadOS
Vulnerable Versions:
unspecified

Timeline

Official Publish: May 8th, 2023
Last Modified: January 29th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.