Vulnerability Description
Apple File Protocol (AFP) in Mac OS X before 10.2.4 allows administrators to log in as other users by using the administrator password.
CVSS Score
7.5
HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apple | Mac Os X | 10.2 |
| Apple | Mac Os X Server | 10.2 |
References
- http://docs.info.apple.com/article.html?artnum=61798PatchVendor Advisory
- http://lists.apple.com/archives/security-announce/2003/Feb/25/applesa20030225mac
- http://securitytracker.com/id?1006107
- http://www.iss.net/security_center/static/11333.phpVendor Advisory
- http://www.securityfocus.com/bid/6860
- http://docs.info.apple.com/article.html?artnum=61798PatchVendor Advisory
- http://lists.apple.com/archives/security-announce/2003/Feb/25/applesa20030225mac
- http://securitytracker.com/id?1006107
- http://www.iss.net/security_center/static/11333.phpVendor Advisory
- http://www.securityfocus.com/bid/6860
FAQ
What is CVE-2003-0049?
CVE-2003-0049 is a vulnerability with a CVSS score of 7.5 (HIGH). Apple File Protocol (AFP) in Mac OS X before 10.2.4 allows administrators to log in as other users by using the administrator password.
How severe is CVE-2003-0049?
CVE-2003-0049 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2003-0049?
Check the references section above for vendor advisories and patch information. Affected products include: Apple Mac Os X, Apple Mac Os X Server.