First published: Fri May 21 1999(Updated: )
Control Panel "Password Security" option for Apple Powerbooks allows attackers with physical access to the machine to bypass the security by booting it with an emergency startup disk and using a disk editor to modify the on/off toggle or password in the aaaaaaaAPWD file, which is normally inaccessible.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
macOS | =8.5 | |
macOS | =8.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1393 is considered a high severity vulnerability due to potential unauthorized access to sensitive information.
To mitigate CVE-1999-1393, ensure physical security of the Apple Powerbook and restrict access to emergency startup disks.
CVE-1999-1393 affects Apple macOS versions 8.5 and 8.6.
The vulnerability allows attackers with physical access to bypass security by modifying the password file using an emergency startup disk.
No, CVE-1999-1393 requires physical access to the device to be exploited.