Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Andrew Mortensen

Pesquisador deUniversity of Michigan
#21313de 53,635
11.5CVSS total
Vulnerabilidades · 2
Média
1
Alta
1
PT-2009-2837
4.3
2009-05-13
Apple · Cfnetwork · CVE-2009-0144
**Name of the Vulnerable Software and Affected Versions** Mac OS X versions prior to 10.5.7 **Description** The issue is related to the improper parsing of noncompliant Set-Cookie headers by CFNetwork in Mac OS X. This allows remote attackers to obtain sensitive information by sniffing the network for secure cookies that are sent over unencrypted HTTP connections. **Recommendations** For Mac OS X versions prior to 10.5.7, update to version 10.5.7 or later to resolve the issue.
PT-2006-5216
7.2
2006-11-18
Apple · Remote Desktop · CVE-2006-4413
**Name of the Vulnerable Software and Affected Versions** Apple Remote Desktop versions prior to 3.1 **Description** The issue allows local users on an Apple Remote Desktop administration system to gain root privileges on client systems by modifying certain built-in packages due to insecure permissions. **Recommendations** For Apple Remote Desktop versions prior to 3.1, update to version 3.1 or later to resolve the issue.