Vulnerability Discussion
This works only with supervised devices (MDM) and allows Apple Game
Center to be disabled. The rationale is Game Center is using Apple ID and will share data on
AppleID-based services; therefore, Game Center must be disabled. This setting also prohibits the
functionality of adding friends to Game Center.
Check
Verify the macOS system is configured to disable iCloud Game Center with the following
command:
/usr/bin/osascript -l JavaScript << EOS
$.NSUserDefaults.alloc.initWithSuiteName('com.apple.applicationaccess')\
.objectForKey('allowGameCenter').js
EOS
If the result is not "false", this is a finding.
Fix
Configure the macOS system to disable iCloud Game Center by installing
the "com.apple.applicationaccess" configuration profile.