PT-2008-4993 · Apple · Macos X

Published

2008-09-16

·

Updated

2017-08-08

·

CVE-2008-3617

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Apple Mac OS X versions 10.5 through 10.5.4
Description The issue allows attackers to potentially guess passwords that the user believed were longer due to the display of additional input characters beyond the maximum password length when setting a password for a VNC viewer using Remote Management and Screen Sharing.
Recommendations For Apple Mac OS X versions 10.5 through 10.5.4, consider restricting the use of Remote Management and Screen Sharing until a fix is available, and ensure that strong, unique passwords are used for VNC viewers to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-3617

Affected Products

Macos X