CVE-2008-2329Sensitive Information Exposure in Apple MAC OS X

Severity
1.9LOWNVD
EPSS
0.1%
top 75.17%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 16
Latest updateMay 1

Description

Directory Services in Apple Mac OS X 10.5 through 10.5.4, when Active Directory is used, allows attackers to enumerate user names via wildcard characters in the Login Window.

CVSS vector

AV:L/AC:M/C:P/I:N/A:NExploitability: 3.4 | Impact: 2.9

Affected Packages2 packages

NVDapple/mac_os_x5 versions+4
NVDapple/mac_os_x_server5 versions+4

Patches

🔴Vulnerability Details

2
GHSA
GHSA-jhvm-jjpv-955g: Directory Services in Apple Mac OS X 102022-05-01
CVEList
CVE-2008-2329: Directory Services in Apple Mac OS X 102008-09-16
CVE-2008-2329 — Sensitive Information Exposure in Apple | cvebase