CCE-90052-2Platform: cpe:/o:apple:mac_os_x:10.9 | Date: (C)2015-06-11 (M)2023-07-04 |
Disable the Prompt for Apple ID and iCloud
The prompt for Apple ID and iCloud must be disabled, as it might mislead new users into creating unwanted Apple IDs and iCloud storage accounts upon their first login.
Parameter:
[enable/disable, Product_Version]
Technical Mechanism:
To check if the prompt for Apple ID and iCloud are disabled for new users, run the following command:
sudo defaults read /System/Library/User Template/English.lproj/Library/Preferences/com.apple.SetupAssistant
If there is no result, or the results do not include 'DidSeeCloudSetup = 1 AND LastSeenCloudProductVersion = 10.9', this is a finding.
CCSS Severity: | CCSS Metrics: |
CCSS Score : 7.7 | Attack Vector: LOCAL |
Exploit Score: 1.0 | Attack Complexity: HIGH |
Impact Score: 6.0 | Privileges Required: NONE |
Severity: HIGH | User Interaction: REQUIRED |
Vector: AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H | Scope: CHANGED |
| Confidentiality: HIGH |
| Integrity: HIGH |
| Availability: HIGH |
| |
References: Resource Id | Reference |
---|
SCAP Repo OVAL Definition | oval:org.secpod.oval:def:24680 |