PT-2004-1150 · Apple · Macos X Server

Published

2004-03-10

·

Updated

2017-07-11

·

CVE-2003-0601

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Apple Mac OS X Server versions 10.2 through 10.2.6
Description The issue allows remote attackers to gain unauthorized access to a new account before it is saved, due to the password not being disabled for the new account.
Recommendations For Apple Mac OS X Server versions 10.2 through 10.2.6, consider disabling new account creation until a fix is available, and ensure that all new accounts are properly secured as soon as they are created.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2003-0601

Affected Products

Macos X Server