296,213
Total vulnerabilities in the database
Apple Remote Desktop before 3.7 does not properly use server authentication-type information during decisions about whether to present an unencrypted-connection warning message, which allows remote attackers to obtain sensitive information in opportunistic circumstances by sniffing the network during an unintended cleartext VNC session.
Software | From | Fixed in |
---|---|---|
apple / apple_remote_desktop | 3.2.2 | 3.2.2.x |
apple / apple_remote_desktop | 3.5.4 | 3.5.4.x |
apple / apple_remote_desktop | 3.5.3 | 3.5.3.x |
apple / apple_remote_desktop | - | 3.6.2.x |
apple / apple_remote_desktop | 3.6 | 3.6.x |
apple / apple_remote_desktop | 3.2.1 | 3.2.1.x |
apple / apple_remote_desktop | 3.0.0 | 3.0.0.x |
apple / apple_remote_desktop | 3.4 | 3.4.x |
apple / apple_remote_desktop | 3.1 | 3.1.x |
apple / apple_remote_desktop | 3.3.2 | 3.3.2.x |
apple / apple_remote_desktop | 3.3.1 | 3.3.1.x |
apple / apple_remote_desktop | 3.5 | 3.5.x |
apple / apple_remote_desktop | 3.5.2 | 3.5.2.x |
apple / apple_remote_desktop | 3.5.1 | 3.5.1.x |
apple / apple_remote_desktop | 3.2 | 3.2.x |
apple / apple_remote_desktop | 3.6.1 | 3.6.1.x |
apple / apple_remote_desktop | 3.3 | 3.3.x |