Security Advisory

CVE-2008-3610

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2008-09-16 23:00:00
Last updated 2024-08-07 09:45:18
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Race condition in Login Window in Apple Mac OS X 10.5 through 10.5.4, when a blank-password account is enabled, allows attackers to bypass password authentication and login to any account via multiple attempts to login to the blank-password account, followed by selection of an arbitrary account from the user list.