CVE-2006-4413: High severity Apple Remote Desktop vulnerability
Apple Remote Desktop before 3.1 uses insecure permissions for certain built-in packages, which allows local users on an Apple Remote Desktop administration system to modify the packages and gain root privileges on client systems that use the packages.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-4413?
CVE-2006-4413 is considered a high-severity vulnerability due to the potential for local users to gain root privileges.
How do I fix CVE-2006-4413?
To fix CVE-2006-4413, upgrade to Apple Remote Desktop version 3.1 or later.
What types of systems are affected by CVE-2006-4413?
CVE-2006-4413 affects systems running Apple Remote Desktop versions prior to 3.1.
Who can exploit CVE-2006-4413?
Any local user on an Apple Remote Desktop administration system can exploit CVE-2006-4413.
What are the potential impacts of CVE-2006-4413?
The potential impacts of CVE-2006-4413 include unauthorized modification of packages and acquisition of root access on client systems.