Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2v72-cqvg-78vr

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

SecurityAgent in Apple OS X before 10.10 does not ensure that a Kerberos ticket is in the cache for the correct user, which allows local users to gain privileges in opportunistic circumstances by leveraging a Fast User Switching login.

SecurityAgent in Apple OS X before 10.10 does not ensure that a Kerberos ticket is in the cache for the correct user, which allows local users to gain privileges in opportunistic circumstances by leveraging a Fast User Switching login.

EPSS

Процентиль: 17%
0.00055
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
больше 11 лет назад

SecurityAgent in Apple OS X before 10.10 does not ensure that a Kerberos ticket is in the cache for the correct user, which allows local users to gain privileges in opportunistic circumstances by leveraging a Fast User Switching login.

EPSS

Процентиль: 17%
0.00055
Низкий

Дефекты

CWE-287