Vulnerability Description
Control Panel "Password Security" option for Apple Powerbooks allows attackers with physical access to the machine to bypass the security by booting it with an emergency startup disk and using a disk editor to modify the on/off toggle or password in the aaaaaaaAPWD file, which is normally inaccessible.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apple | Macos | 8.5 |
References
- http://freaky.staticusers.net/macsec/data/powerbooksecurity-data.htmlExploitVendor Advisory
- http://www.securityfocus.com/bid/532ExploitVendor Advisory
- http://freaky.staticusers.net/macsec/data/powerbooksecurity-data.htmlExploitVendor Advisory
- http://www.securityfocus.com/bid/532ExploitVendor Advisory
FAQ
What is CVE-1999-1393?
CVE-1999-1393 is a vulnerability with a CVSS score of 4.6 (MEDIUM). Control Panel "Password Security" option for Apple Powerbooks allows attackers with physical access to the machine to bypass the security by booting it with an emergency startup disk and using a disk ...
How severe is CVE-1999-1393?
CVE-1999-1393 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-1393?
Check the references section above for vendor advisories and patch information. Affected products include: Apple Macos.