Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-4446

Опубликовано: 18 окт. 2014
Источник: nvd
CVSS2: 2.1
EPSS Низкий

Описание

Mail Service in Apple OS X Server before 4.0 does not enforce SACL changes until after a service restart, which allows remote authenticated users to bypass intended access restrictions in opportunistic circumstances by leveraging a change made by an administrator.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:apple:os_x_server:*:*:*:*:*:*:*:*
Версия до 3.1.2 (включая)

EPSS

Процентиль: 31%
0.00118
Низкий

2.1 Low

CVSS2

Дефекты

CWE-264

Связанные уязвимости

github
больше 3 лет назад

Mail Service in Apple OS X Server before 4.0 does not enforce SACL changes until after a service restart, which allows remote authenticated users to bypass intended access restrictions in opportunistic circumstances by leveraging a change made by an administrator.

EPSS

Процентиль: 31%
0.00118
Низкий

2.1 Low

CVSS2

Дефекты

CWE-264