CVE-2005-3700

medium
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

Unknown vulnerability in iodbcadmintool in the ODBC Administrator utility in Mac OS X and OS X Server 10.3.9 and 10.4.3 allows local users to execute arbitrary code via unknown attack vectors.

References

http://docs.info.apple.com/article.html?artnum=302847

http://secunia.com/advisories/17813

http://securitytracker.com/id?1015289

http://www.osvdb.org/21272

http://www.securityfocus.com/bid/15647

http://www.vupen.com/english/advisories/2005/2659

https://exchange.xforce.ibmcloud.com/vulnerabilities/23332

Details

Source: MITRE

Published: 2005-12-01

Updated: 2017-07-11

Risk Information

CVSS v2

Base Score: 4.6

Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Impact Score: 6.4

Exploitability Score: 3.9

Severity: MEDIUM

Tenable Plugins

View all (7 total)

IDNameProductFamilySeverity
3308Mac OS X Multiple Vulnerabilities (Security Update 2005-009)Nessus Network MonitorOperating System Detection
high
20249Mac OS X Multiple Vulnerabilities (Security Update 2005-009)NessusMacOS X Local Security Checks
high
3112Apache < 2.0.55 HTTP Smuggling VulnerabilityNessus Network MonitorWeb Servers
high
3042Apache HTTP Request Parsing HTML Injection Nessus Network MonitorWeb Servers
high
800798Mac OS X Multiple Vulnerabilities (Security Update 2005-009)Log Correlation EngineOperating System Detection
high
800576Apache HTTP Request Parsing HTML Injection Log Correlation EngineWeb Servers
high
800556Apache < 2.0.55 HTTP Smuggling VulnerabilityLog Correlation EngineWeb Servers
high