CVE-2014-1257 PUBLISHED CVSS 3.5999999046325684 LOW

CFNetwork in Apple OS X through 10.8.5 does not remove session cookies upon a Safari reset action, which allows physically proximate attackers to bypass intended access restrictions by leveraging an unattended workstation.

EPSS 0.06% · 19.1th percentile

Risk Scores

CVSS v2.0
3.5999999046325684
EPSS Score
0.06%
19.1th percentile

Affected Products

VendorProductVersions
applemac_os_x10.8.5, 0, 10.8.0
n/an/an/a

Timeline

References

Open in Interactive Console →