Security Advisory
CVE-2014-4425
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
CFPreferences in Apple OS X before 10.10 does not properly enforce the "require password after sleep or screen saver begins" setting, which makes it easier for physically proximate attackers to obtain access by leveraging an unattended workstation.