Cisco Trust Agent (CTA) prior to 2.1.104.0, when running on MacOS X, allows attackers with physical access to bypass authentication and modify System Preferences, including passwords, by invoking the Apple Menu when the Access Control Server (ACS) produces a user notification message after posture validation.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apple mac_os_x |