CVE-2007-4679: Low severity Apple iOS and macOS vulnerability
Published Nov 15, 2007
·Updated
CFFTP in CFNetwork for Apple Mac OS X 10.4 through 10.4.10 allows remote FTP servers to force clients to connect to other hosts via crafted responses to FTP PASV commands.
Affected Software
1 affected component
Apple iOS and macOS>=10.4<=10.4.10
Event History
Nov 15, 2007
CVE Published
01:46 AM
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-4679?
CVE-2007-4679 is classified as a high-severity vulnerability due to its potential for exploitation by remote FTP servers.
2
How do I fix CVE-2007-4679?
To mitigate CVE-2007-4679, users should upgrade to a version of Mac OS X beyond 10.4.10 where this vulnerability is not present.
3
What type of attack does CVE-2007-4679 allow?
CVE-2007-4679 allows remote FTP servers to manipulate client connections, directing them to unintended hosts.
4
Which versions of Mac OS X are affected by CVE-2007-4679?
CVE-2007-4679 affects Mac OS X 10.4 through 10.4.10.
5
What is the potential impact of exploiting CVE-2007-4679?
Exploiting CVE-2007-4679 could lead to unauthorized access to malicious hosts, potentially compromising the client's data and security.