Cocktail 3.5.4 and possibly earlier in Mac OS X passes the administrative password on the command line to sudo in cleartext, which allows local users to gain sensitive information by running listing processes.
References
Configurations
History
20 Nov 2024, 23:57
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=111480898530362&w=2 - | |
References | () http://secunia.com/advisories/15201 - | |
References | () http://www.osvdb.org/16046 - | |
References | () http://www.securityfocus.com/bid/13449 - |
Information
Published : 2005-05-03 04:00
Updated : 2025-04-03 01:03
NVD link : CVE-2005-1387
Mitre link : CVE-2005-1387
CVE.ORG link : CVE-2005-1387
JSON object : View
Products Affected
kristofer_szymanski
- cocktail
CWE