CVE-2010-0522Apple MAC OS X Server vulnerability

CWE-2643 documents3 sources
Severity
9.0CRITICALNVD
EPSS
0.4%
top 37.94%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 30
Latest updateMay 2

Description

Server Admin in Apple Mac OS X Server 10.5.8 does not properly determine the privileges of users who had former membership in the admin group, which allows remote authenticated users to leverage this former membership to obtain a server connection via screen sharing.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 8.0 | Impact: 10.0

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-x5jr-g6pf-rrxm: Server Admin in Apple Mac OS X Server 102022-05-02
CVEList
CVE-2010-0522: Server Admin in Apple Mac OS X Server 102010-03-30
CVE-2010-0522 — Apple MAC OS X Server vulnerability | cvebase