PT-2006-2452 · Apple · Macos X
Damien Bobillot
·
Published
2006-05-12
·
Updated
2017-07-20
·
CVE-2006-1444
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Apple Mac OS X version 10.4.6
Description
The issue allows an application to bypass restrictions for secure event input and read certain events from other applications in the same window session by using Quartz Event Services, but only when "Enable access for assistive devices" is on.
Recommendations
For Apple Mac OS X version 10.4.6, consider disabling the "Enable access for assistive devices" option to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Macos X