CVE-2012-3720: Medium severity apple ios and macos vulnerability
Mobile Accounts in Apple Mac OS X before 10.7.5 and 10.8.x before 10.8.2 saves password hashes for external-account use even if external accounts are not enabled, which might allow remote attackers to determine passwords via unspecified access to a mobile account.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-3720?
CVE-2012-3720 is considered a moderate severity vulnerability, as it allows attackers to determine passwords from password hashes.
How do I fix CVE-2012-3720?
To fix CVE-2012-3720, you should update your Apple Mac OS X to version 10.7.5 or later.
Which versions of Mac OS X are affected by CVE-2012-3720?
CVE-2012-3720 affects Mac OS X versions prior to 10.7.5 and versions 10.8.0 to 10.8.1.
What type of accounts are vulnerable in CVE-2012-3720?
CVE-2012-3720 impacts mobile accounts that may improperly save password hashes for external accounts.
Could CVE-2012-3720 lead to a password compromise?
Yes, CVE-2012-3720 could allow remote attackers to potentially determine user passwords if they exploit the vulnerability.