Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Eduardo Bonsi

Researcher fromBEARTCOMMUNICATIONS
#28316of 56,330
9.4Total CVSS
Vulnerabilities · 2
Low
1
Medium
1
PT-2014-5903
2.6
2014-10-18
Apple · Os X · CVE-2014-4440
**Name of the Vulnerable Software and Affected Versions** Apple OS X versions prior to 10.10 **Description** The issue concerns the MCX Desktop Config Profiles implementation, which retains web-proxy settings from uninstalled mobile-configuration profiles. This allows remote attackers to obtain sensitive information by leveraging access to an unintended proxy server in certain circumstances. **Recommendations** For Apple OS X versions prior to 10.10, update to version 10.10 or later to resolve the issue.
PT-2014-5904
6.8
2014-10-18
Apple · Os X · CVE-2014-4441
**Name of the Vulnerable Software and Affected Versions** Apple OS X versions prior to 10.10 **Description** The issue concerns the NetFS Client Framework, which fails to ensure that the disabling of File Sharing is always possible. This allows remote attackers to read or write to files by leveraging a state in which File Sharing is permanently enabled. **Recommendations** For Apple OS X versions prior to 10.10, update to version 10.10 or later to resolve the issue.