6.8
CVSSv2

CVE-2005-2714

Published: 31/12/2005 Updated: 19/10/2018
CVSS v2 Base Score: 6.8 | Impact Score: 10 | Exploitability Score: 3.1
VMScore: 720
Vector: AV:L/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

passwd in Directory Services in Mac OS X 10.3.x prior to 10.3.9 and 10.4.x prior to 10.4.5 allows local users to overwrite arbitrary files via a symlink attack on the .pwtmp.[PID] temporary file.

Vulnerable Product Search on Vulmon Subscribe to Product

apple mac os x 10.3.3

apple mac os x 10.3.4

apple mac os x 10.4.1

apple mac os x 10.4.2

apple mac os x server 10.3.4

apple mac os x server 10.3.5

apple mac os x server 10.4.2

apple mac os x server 10.4.3

apple mac os x 10.3.5

apple mac os x 10.3.6

apple mac os x 10.4.3

apple mac os x 10.4.4

apple mac os x server 10.3.6

apple mac os x server 10.3.7

apple mac os x server 10.4.4

apple mac os x server 10.4.5

apple mac os x 10.3

apple mac os x 10.3.7

apple mac os x 10.3.8

apple mac os x 10.4.5

apple mac os x server 10.3

apple mac os x server 10.3.1

apple mac os x server 10.3.8

apple mac os x server 10.3.9

apple mac os x 10.3.1

apple mac os x 10.3.2

apple mac os x 10.3.9

apple mac os x 10.4

apple mac os x server 10.3.2

apple mac os x server 10.3.3

apple mac os x server 10.4

apple mac os x server 10.4.1