CVE-2009-2192Apple MAC OS X vulnerability

CWE-2553 documents3 sources
Severity
7.5HIGHNVD
EPSS
0.3%
top 42.64%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 6
Latest updateMay 2

Description

MobileMe in Apple Mac OS X 10.5 before 10.5.8 does not properly delete credentials upon signout from the preference pane, which makes it easier for attackers to hijack a MobileMe session via unspecified vectors, related to a "logic issue."

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages2 packages

NVDapple/mac_os_x9 versions+8
NVDapple/mac_os_x_server9 versions+8

Patches

🔴Vulnerability Details

2
GHSA
GHSA-5g54-gg85-4fg3: MobileMe in Apple Mac OS X 102022-05-02
CVEList
CVE-2009-2192: MobileMe in Apple Mac OS X 102009-08-06
CVE-2009-2192 — Apple MAC OS X vulnerability | cvebase