Apple · Os X · CVE-2014-4440
**Name of the Vulnerable Software and Affected Versions**
Apple OS X versions prior to 10.10
**Description**
The issue concerns the MCX Desktop Config Profiles implementation, which retains web-proxy settings from uninstalled mobile-configuration profiles. This allows remote attackers to obtain sensitive information by leveraging access to an unintended proxy server in certain circumstances.
**Recommendations**
For Apple OS X versions prior to 10.10, update to version 10.10 or later to resolve the issue.