[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2006-4403Date: (C)2006-11-30   (M)2023-12-22


The FTP server in Apple Mac OS X 10.4.8 and earlier, when FTP Access is enabled, will crash when a login failure occurs with a valid user name, which allows remote attackers to cause a denial of service (crash) and enumerate valid usernames.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 4.0
Exploit Score: 4.9
Impact Score: 4.9
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: HIGH
Authentication: NONE
Confidentiality: PARTIAL
Integrity: NONE
Availability: PARTIAL
  
Reference:
SECTRACK-1017303
BID-21335
SECUNIA-23155
OSVDB-30734
ADV-2006-4750
APPLE-SA-2006-11-28
TA06-333A
VU#371648
http://docs.info.apple.com/article.html?artnum=304829
macos-ftp-server-login-dos(30621)

CPE    1
cpe:/o:apple:mac_os_x:10.4.8

© SecPod Technologies