CVE-2008-4215Apple MAC OS X Server vulnerability

CWE-2643 documents3 sources
Severity
7.5HIGHNVD
EPSS
0.7%
top 27.80%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 10
Latest updateMay 2

Description

Weblog in Mac OS X Server 10.4.11 does not properly check an error condition when a weblog posting access control list is specified for a user that has multiple short names, which might allow attackers to bypass intended access restrictions.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-9jq6-xfgg-9267: Weblog in Mac OS X Server 102022-05-02
CVEList
CVE-2008-4215: Weblog in Mac OS X Server 102008-10-10
CVE-2008-4215 — Apple MAC OS X Server vulnerability | cvebase