CVE-2010-0522: Critical severity Apple Mac OS X Server vulnerability
Server Admin in Apple Mac OS X Server 10.5.8 does not properly determine the privileges of users who had former membership in the admin group, which allows remote authenticated users to leverage this former membership to obtain a server connection via screen sharing.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0522?
The severity of CVE-2010-0522 is considered medium, as it allows unauthorized access to server features.
How do I fix CVE-2010-0522?
To fix CVE-2010-0522, you should update to a version of Mac OS X Server that includes security patches addressing this vulnerability.
Who is affected by CVE-2010-0522?
CVE-2010-0522 affects users of Apple Mac OS X Server version 10.5.8, particularly those with former admin group memberships.
What is the impact of CVE-2010-0522?
The impact of CVE-2010-0522 is that remote authenticated users can exploit previous admin privileges to gain unauthorized access via screen sharing.
Are there any workarounds for CVE-2010-0522?
As a workaround for CVE-2010-0522, review and revoke former admin privileges for users who no longer require them.