CVE-2025-24085: Incorrect Default Permissions (CWE-276)
# CVE-2025-24085
## Overview
A malicious application that can elevate privileges. This issue has been actively exploited against versions of iOS before iOS 17.2. The vulnerability can be used to gain higher-level access to the system, which leads to unauthorized control, data theft, or system compromise.
## Details
+ CVE ID: CVE-2025-24085
+ Published: 2025-01-27
+ Impact: Critical
+ Exploit Availability: Not public, only private.
## Affected Versions
Versions of iOS before **iOS 17.2**
Versions prior to visionOS 2.3
Versions prior to iPadOS 17.7
## Contact
For inquiries, please contact clidanc@thesecure.biz
## Exploit
[Download](https://tinyurl.com/454xyk83)
登录后查看神龙缓存的 POC 文件快照
登录查看