CVE-2015-1130: Apple OS X Authentication Bypass Vulnerability
Published Apr 10, 2015
·Updated
The XPC implementation in Admin Framework in Apple OS X before 10.10.3 allows local users to bypass authentication and obtain admin privileges.
Affected Software
2 affected components
Apple iOS and macOS<=10.10.2
Apple OS X
Event History
Apr 10, 2015
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Data Sourced
via NVD·02:59 PM
DescriptionSeverityWeaknessAffected Software
Feb 10, 2022
Known Exploited
via CISA·12:00 AM
Frequently Asked Questions
1
What is the severity of CVE-2015-1130?
CVE-2015-1130 is considered a high severity vulnerability due to its potential to allow local users to bypass authentication and gain admin privileges.
2
How do I fix CVE-2015-1130?
To fix CVE-2015-1130, you need to update your Apple OS X to version 10.10.3 or later.
3
Who is affected by CVE-2015-1130?
CVE-2015-1130 affects local users on Apple OS X versions prior to 10.10.3.
4
What type of vulnerability is CVE-2015-1130?
CVE-2015-1130 is a privilege escalation vulnerability that allows unauthorized access to administrative rights.
5
When was CVE-2015-1130 disclosed?
CVE-2015-1130 was disclosed in April 2015.