VulnerabilityModified
CVE-2001-1447
NetInfo Manager for Mac OS X 10.0 through 10.1 allows local users to gain root privileges by opening applications using the (1) "recent items" and (2) "services" menus, which causes the applications to run with root privileges.
HIGH 7.2EPSS 0.47%
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.47%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
NetInfo Manager for Mac OS X 10.0 through 10.1 allows local users to gain root privileges by opening applications using the (1) "recent items" and (2) "services" menus, which causes the applications to run with root privileges.
- CVSS 2.0
- 7.2 HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 0.47% probability · 39th percentile
- CISA KEV
- Not listed
- Affected
- apple/mac os x
- Source
- cve@mitre.org
References
- http://archives.neohapsis.com/archives/bugtraq/2001-10/0121.htmlExploit
- http://archives.neohapsis.com/archives/bugtraq/2001-10/0130.htmlVendor Advisory
- http://www.ciac.org/ciac/bulletins/m-007.shtmlExploit
- http://www.kb.cert.org/vuls/id/945747Exploit, Patch, US Government Resource
- http://www.securityfocus.com/bid/3439Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7303
- http://archives.neohapsis.com/archives/bugtraq/2001-10/0121.htmlExploit
- http://archives.neohapsis.com/archives/bugtraq/2001-10/0130.htmlVendor Advisory
- http://www.ciac.org/ciac/bulletins/m-007.shtmlExploit
- http://www.kb.cert.org/vuls/id/945747Exploit, Patch, US Government Resource
- http://www.securityfocus.com/bid/3439Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7303
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.