5
CVSSv2

CVE-2006-4409

Published: 30/11/2006 Updated: 08/03/2011
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

The Online Certificate Status Protocol (OCSP) service in the Security Framework in Apple Mac OS X 10.4 up to and including 10.4.8 retrieve certificate revocation lists (CRL) when an HTTP proxy is in use, which could cause the system to accept certificates that have been revoked.

Vulnerable Product Search on Vulmon Subscribe to Product

apple mac os x 10.4.1

apple mac os x 10.4.2

apple mac os x 10.4.5

apple mac os x 10.4.6

apple mac os x 10.4.3

apple mac os x 10.4.4

apple mac os x 10.4

apple mac os x 10.4.7

apple mac os x 10.4.8