cbcvebase.
CVE-2008-1033
published 2008-06-02

CVE-2008-1033: The scheduler in CUPS in Apple Mac OS X 10.5 before 10.5.3, when debug logging is enabled and a printer requires a password, allows attackers to obtain…

PriorityP411low2.1CVSS 2.0
AVNACHAuSCPINAN
EPSS
1.55%
72.4th percentile
The scheduler in CUPS in Apple Mac OS X 10.5 before 10.5.3, when debug logging is enabled and a printer requires a password, allows attackers to obtain sensitive information (credentials) by reading the log data, related to "authentication environment variables."

Affected

5 ranges
VendorProductVersion rangeFixed in
applecups>= 0 < 1.3.7-11.3.7-1
applecups>= 0 < 1.3.7-11.3.7-1
applecups>= 0 < 1.3.7-11.3.7-1
applecups>= 0 < 1.3.7-11.3.7-1
debiancups< cups 1.3.7-1 (bookworm)cups 1.3.7-1 (bookworm)

CVSS provenance

nvdv2.02.1LOWAV:N/AC:H/Au:S/C:P/I:N/A:N
osv2.1LOW
vendor_debian2.1LOW
vendor_redhat2.1LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.