CVE-2003-0601
Last modified
CVE-2003-0601 is a vulnerability of currently unknown severity. Workgroup Manager in Apple Mac OS X Server 10.2 through 10.2.6 does not disable a password for a new account before it is saved for the first time, which allows remote attackers to gain unauthorized access via the new account before it is saved.. EPSS estimates a 1.50% chance of exploitation in the next 30 days.
Description
Workgroup Manager in Apple Mac OS X Server 10.2 through 10.2.6 does not disable a password for a new account before it is saved for the first time, which allows remote attackers to gain unauthorized access via the new account before it is saved.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Apple | Mac Os X Server | 10.2 |
| Apple | Mac Os X Server | 10.2.1 |
| Apple | Mac Os X Server | 10.2.2 |
| Apple | Mac Os X Server | 10.2.3 |
| Apple | Mac Os X Server | 10.2.4 |
| Apple | Mac Os X Server | 10.2.5 |
| Apple | Mac Os X Server | 10.2.6 |
References
- http://docs.info.apple.com/article.html?artnum=25631Patch, Vendor Advisory
- http://www.securityfocus.com/bid/8266Patch, Vendor Advisory
- http://docs.info.apple.com/article.html?artnum=25631Patch, Vendor Advisory
- http://www.securityfocus.com/bid/8266Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2003-0601?
How severe is CVE-2003-0601?
How do I fix CVE-2003-0601?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2003
- CVE-2003-0594Mozilla allows remote attackers to bypass intended cookie ac…
- CVE-2003-0595Buffer overflow in WiTango Application Server and Tango 2000…
- CVE-2003-0596FDclone 2.00a, and other versions before 2.02a, creates temp…
- CVE-2003-0597Unknown vulnerability in display of Merge before 5.3.23a in …
- CVE-2003-0598Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2003-0599Unknown vulnerability in the Virtual File System (VFS) capab…
- CVE-2003-0602Multiple cross-site scripting vulnerabilities (XSS) in Bugzi…
- CVE-2003-0603Bugzilla 2.16.x before 2.16.3, 2.17.x before 2.17.4, and ear…
- CVE-2003-0604Windows Media Player (WMP) 7 and 8, as running on Internet E…
- CVE-2003-0605The RPC DCOM interface in Windows 2000 SP3 and SP4 allows re…
- CVE-2003-0606sup 1.8 and earlier does not properly create temporary files…
- CVE-2003-0607Buffer overflow in xconq 7.4.1 allows local users to become …
Are you affected by CVE-2003-0601?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
