PT-2007-2175 · Apple · Macos X
Published
2007-03-13
·
Updated
2011-03-08
·
CVE-2007-0723
CVSS v2.0
8.5
High
| Vector | AV:N/AC:M/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Mac OS X versions 10.3.9 through 10.4.8
Description
The issue affects the authentication feature for DirectoryService (DS Plug-Ins) and allows remote authenticated LDAP users to modify the root password and gain privileges.
Recommendations
For Mac OS X versions 10.3.9 through 10.4.8, update to a version that contains the fix for this issue to prevent remote authenticated LDAP users from modifying the root password and gaining privileges.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Macos X