CVE Vulnerabilities

CVE-2003-0601

Published: Mar 29, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Workgroup Manager in Apple Mac OS X Server 10.2 through 10.2.6 does not disable a password for a new account before it is saved for the first time, which allows remote attackers to gain unauthorized access via the new account before it is saved.

Affected Software

NameVendorStart VersionEnd Version
Mac_os_x_serverApple10.2 (including)10.2 (including)
Mac_os_x_serverApple10.2.1 (including)10.2.1 (including)
Mac_os_x_serverApple10.2.2 (including)10.2.2 (including)
Mac_os_x_serverApple10.2.3 (including)10.2.3 (including)
Mac_os_x_serverApple10.2.4 (including)10.2.4 (including)
Mac_os_x_serverApple10.2.5 (including)10.2.5 (including)
Mac_os_x_serverApple10.2.6 (including)10.2.6 (including)

References