First published: Sat Oct 25 2003(Updated: )
nidump on MacOS X before 10.3 allows local users to read the encrypted passwords from the password file by specifying passwd as a command line argument.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | =10.4.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-1412 has a moderate severity rating as it exposes encrypted passwords, posing a potential security risk.
To fix CVE-2001-1412, upgrade your MacOS X to version 10.3 or later.
CVE-2001-1412 affects MacOS X versions prior to 10.3, specifically version 10.4.9 and earlier.
CVE-2001-1412 can be exploited by local users with access to the system.
Due to CVE-2001-1412, local users can read encrypted passwords from the password file.