TROYANOSYVIRUS
Back to CVEs

CVE-2008-3610

N/A

Description

Race condition in Login Window in Apple Mac OS X 10.5 through 10.5.4, when a blank-password account is enabled, allows attackers to bypass password authentication and login to any account via multiple attempts to login to the blank-password account, followed by selection of an arbitrary account from the user list.

CVE Details

CVSS v3.1 ScoreN/A
Published9/16/2008
Last Modified4/23/2026
Sourcenvd
Honeypot Sightings0

Affected Products

apple:mac_os_xapple:mac_os_x_server

Weaknesses (CWE)

CWE-287

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.