7.2
CVSSv2

CVE-2005-1387

Published: 03/05/2005 Updated: 18/10/2016
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Cocktail 3.5.4 and possibly earlier in Mac OS X passes the administrative password on the command line to sudo in cleartext, which allows local users to gain sensitive information by running listing processes.

Vulnerable Product Search on Vulmon Subscribe to Product

kristofer szymanski cocktail 3.5.4