René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

99 lines
2.9 KiB
JSON

{
"id": "CVE-2014-4425",
"sourceIdentifier": "product-security@apple.com",
"published": "2014-10-18T01:55:12.933",
"lastModified": "2017-08-29T01:35:01.750",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "CFPreferences in Apple OS X before 10.10 does not properly enforce the \"require password after sleep or screen saver begins\" setting, which makes it easier for physically proximate attackers to obtain access by leveraging an unattended workstation."
},
{
"lang": "es",
"value": "CFPreferences en Apple OS X anterior a 10.10 no fuerza correctamente la configuraci\u00f3n 'requerir contrase\u00f1a tras el comienzo del reposo o salvapantallas', lo que facilita a atacantes f\u00edsicamente pr\u00f3ximos obtener acceso a una estaci\u00f3n de trabajo desatendida."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:L/Au:N/C:P/I:P/A:P",
"accessVector": "LOCAL",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "PARTIAL",
"availabilityImpact": "PARTIAL",
"baseScore": 4.6
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 3.9,
"impactScore": 6.4,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-287"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*",
"versionEndIncluding": "10.9.5",
"matchCriteriaId": "9C3A0363-F05A-49C3-A9D2-E4F31B60CD4D"
}
]
}
]
}
],
"references": [
{
"url": "http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.html",
"source": "product-security@apple.com"
},
{
"url": "http://www.securityfocus.com/bid/70630",
"source": "product-security@apple.com"
},
{
"url": "http://www.securitytracker.com/id/1031063",
"source": "product-security@apple.com"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/97640",
"source": "product-security@apple.com"
},
{
"url": "https://support.apple.com/kb/HT6535",
"source": "product-security@apple.com",
"tags": [
"Vendor Advisory"
]
}
]
}