CVE-2011-0189Apple MAC OS X vulnerability

CWE-163 documents3 sources
Severity
5.0MEDIUMNVD
EPSS
0.2%
top 55.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 23
Latest updateMay 17

Description

The default configuration of Terminal in Apple Mac OS X 10.6 before 10.6.7 uses SSH protocol version 1 within the New Remote Connection dialog, which might make it easier for man-in-the-middle attackers to spoof SSH servers by leveraging protocol vulnerabilities.

CVSS vector

AV:N/AC:L/C:N/I:P/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages2 packages

NVDapple/mac_os_x7 versions+6
NVDapple/mac_os_x_server7 versions+6

Patches

🔴Vulnerability Details

2
GHSA
GHSA-rwhc-rf36-693j: The default configuration of Terminal in Apple Mac OS X 102022-05-17
CVEList
CVE-2011-0189: The default configuration of Terminal in Apple Mac OS X 102011-03-23
CVE-2011-0189 — Apple MAC OS X vulnerability | cvebase