CVE-2011-0185

Format string vulnerability in the debug-logging feature in Application Firewall in Apple Mac OS X before 10.7.2 allows local users to gain privileges via a crafted name of an executable file.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.4 UNKNOWN
LOCAL
MEDIUM
AV:L/AC:M/Au:N/C:P/I:P/A:P
appleCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 18%
VendorProductVersion
applemac_os_x
𝑥
≤ 10.7.1
applemac_os_x
10.7.0
applemac_os_x_server
𝑥
≤ 10.7.1
applemac_os_x_server
10.7.0
applemac_os_x
10.6.0
applemac_os_x
10.6.1
applemac_os_x
10.6.2
applemac_os_x
10.6.3
applemac_os_x
10.6.4
applemac_os_x
10.6.5
applemac_os_x
10.6.6
applemac_os_x
10.6.7
applemac_os_x
10.6.8
applemac_os_x_server
10.6.0
applemac_os_x_server
10.6.1
applemac_os_x_server
10.6.2
applemac_os_x_server
10.6.3
applemac_os_x_server
10.6.4
applemac_os_x_server
10.6.5
applemac_os_x_server
10.6.6
applemac_os_x_server
10.6.7
applemac_os_x_server
10.6.8
𝑥
= Vulnerable software versions