Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Eduardo Bonsi

Researcher fromBEARTCOMMUNICATIONS
#26774of 53,638
9.4Total CVSS
Vulnerabilities · 2
Low
1
Medium
1
PT-2014-5903
2.6
2014-10-18
Apple · Os X · CVE-2014-4440
**Name of the Vulnerable Software and Affected Versions** Apple OS X versions prior to 10.10 **Description** The issue concerns the MCX Desktop Config Profiles implementation, which retains web-proxy settings from uninstalled mobile-configuration profiles. This allows remote attackers to obtain sensitive information by leveraging access to an unintended proxy server in certain circumstances. **Recommendations** For Apple OS X versions prior to 10.10, update to version 10.10 or later to resolve the issue.
PT-2014-5904
6.8
2014-10-18
Apple · Os X · CVE-2014-4441
**Name of the Vulnerable Software and Affected Versions** Apple OS X versions prior to 10.10 **Description** The issue concerns the NetFS Client Framework, which fails to ensure that the disabling of File Sharing is always possible. This allows remote attackers to read or write to files by leveraging a state in which File Sharing is permanently enabled. **Recommendations** For Apple OS X versions prior to 10.10, update to version 10.10 or later to resolve the issue.