Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fxqv-wg5x-xxgc

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Cisco Trust Agent (CTA) before 2.1.104.0, when running on MacOS X, allows attackers with physical access to bypass authentication and modify System Preferences, including passwords, by invoking the Apple Menu when the Access Control Server (ACS) produces a user notification message after posture validation.

Cisco Trust Agent (CTA) before 2.1.104.0, when running on MacOS X, allows attackers with physical access to bypass authentication and modify System Preferences, including passwords, by invoking the Apple Menu when the Access Control Server (ACS) produces a user notification message after posture validation.

EPSS

Процентиль: 29%
0.00104
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
больше 18 лет назад

Cisco Trust Agent (CTA) before 2.1.104.0, when running on MacOS X, allows attackers with physical access to bypass authentication and modify System Preferences, including passwords, by invoking the Apple Menu when the Access Control Server (ACS) produces a user notification message after posture validation.

EPSS

Процентиль: 29%
0.00104
Низкий

Дефекты

CWE-287