4.4
CVSSv2

CVE-2010-1838

Published: 15/11/2010 Updated: 12/01/2011
CVSS v2 Base Score: 4.4 | Impact Score: 6.4 | Exploitability Score: 3.4
VMScore: 392
Vector: AV:L/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Directory Services in Apple Mac OS X 10.5.8 and 10.6.x prior to 10.6.5 does not properly handle errors associated with disabled mobile accounts, which allows remote malicious users to bypass authentication by providing a valid account name.

Vulnerable Product Search on Vulmon Subscribe to Product

apple mac os x 10.6.3

apple mac os x 10.6.1

apple mac os x 10.5.8

apple mac os x 10.6.0

apple mac os x 10.6.4

apple mac os x 10.6.2

apple mac os x server 10.6.4

apple mac os x server 10.6.3

apple mac os x server 10.6.2

apple mac os x server 10.5.8

apple mac os x server 10.6.0

apple mac os x server 10.6.1