7.6
CVSSv2

CVE-2008-3610

Published: 16/09/2008 Updated: 08/08/2017
CVSS v2 Base Score: 7.6 | Impact Score: 10 | Exploitability Score: 4.9
VMScore: 676
Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

Race condition in Login Window in Apple Mac OS X 10.5 up to and including 10.5.4, when a blank-password account is enabled, allows malicious users to bypass password authentication and login to any account via multiple attempts to login to the blank-password account, followed by selection of an arbitrary account from the user list.

Vulnerable Product Search on Vulmon Subscribe to Product

apple mac os x 10.5.3

apple mac os x 10.5

apple mac os x server 10.5

apple mac os x server 10.5.1

apple mac os x 10.5.1

apple mac os x server 10.5.4

apple mac os x server 10.5.3

apple mac os x 10.5.4

apple mac os x server 10.5.2

apple mac os x 10.5.2