CVE-2011-3462
Published Feb 2, 2012
Last updated 13 years ago
Overview
- Description
- Time Machine in Apple Mac OS X before 10.7.3 does not verify the unique identifier of its remote AFP volume or Time Capsule, which allows remote attackers to obtain sensitive information contained in new backups by spoofing this storage object, a different vulnerability than CVE-2010-1803.
- Source
- product-security@apple.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- NVD-CWE-noinfo
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B52C3912-5F34-4C5C-9B02-953C5DE8DE49", "versionEndIncluding": "10.7.2" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.7.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8961F444-48C4-4B54-829B-A1A2D0F2716C" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.7.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "09A0FA11-6211-4962-A6E0-F00732818012" }, { "criteria": "cpe:2.3:o:apple:mac_os_x_server:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "19E02215-21EA-41A7-B977-01CE5CB2424F", "versionEndIncluding": "10.7.2" }, { "criteria": "cpe:2.3:o:apple:mac_os_x_server:10.7.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "38823717-65A1-4587-8F05-32EA9A01084C" }, { "criteria": "cpe:2.3:o:apple:mac_os_x_server:10.7.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7BD4E77C-3F87-476B-BB66-75EECDFDB18E" } ], "operator": "OR" } ] } ]