CVE-2019-8522
Severity CVSS v4.0: 
            Pending analysis
                                                    Type: 
          
                          CWE-306
                        Missing Authentication for Critical Function
          
        Publication date: 
                          18/12/2019
                  Last modified: 
                          21/07/2021
                  Description
A logic issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.4. An encrypted volume may be unmounted and remounted by a different user without prompting for the password.
              Impact
Base Score 3.x
          5.50
        Severity 3.x
          MEDIUM
        Base Score 2.0
          2.10
        Severity 2.0
          LOW
        Vulnerable products and versions
| CPE | From | Up to | 
|---|---|---|
| cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:* | 10.14.4 (excluding) | 
To consult the complete list of CPE names with products and versions, see this page



