CVE-ID

CVE-2001-0102

• CVSS Severity Rating • Fix Information • Vulnerable Software Versions • SCAP Mappings • CPE Information
Description
"Multiple Users" Control Panel in Mac OS 9 allows Normal users to gain Owner privileges by removing the Users & Groups Data File, which effectively removes the Owner password and allows the Normal user to log in as the Owner account without a password.
References
Note: References are provided for the convenience of the reader to help distinguish between vulnerabilities. The list is not intended to be complete.
Assigning CNA
MITRE Corporation
Date Record Created
20010201 Disclaimer: The record creation date may reflect when the CVE ID was allocated or reserved, and does not necessarily indicate when this vulnerability was discovered, shared with the affected vendor, publicly disclosed, or updated in CVE.
Phase (Legacy)
Proposed (20010202)
Votes (Legacy)
ACCEPT(1) Frech
NOOP(4) Christey, Cole, Wall, Ziese
Comments (Legacy)
 Christey> The following post claims that Apple fixed the problem.
   However, the web page is broken, and the new page requires
   user registration.
   BUGTRAQ:20010420 [FYI] Mac OS 9 Multiple Users weakness fixed (was: Mac OS 9 Multiple Users Control Panel Password Vulnerability)
   URL:http://marc.theaimsgroup.com/?l=bugtraq&m=98793967806147&w=2

Proposed (Legacy)
20010202
This is an record on the CVE List, which provides common identifiers for publicly known cybersecurity vulnerabilities.