Vulnerabilities > Apple > OS X Server > Low

DATE CVE VULNERABILITY TITLE RISK
2014-10-18 CVE-2014-4446 Permissions, Privileges, and Access Controls vulnerability in Apple OS X Server
Mail Service in Apple OS X Server before 4.0 does not enforce SACL changes until after a service restart, which allows remote authenticated users to bypass intended access restrictions in opportunistic circumstances by leveraging a change made by an administrator.
network
high complexity
apple CWE-264
2.1
2014-10-18 CVE-2014-4447 Cryptographic Issues vulnerability in Apple OS X Server
Profile Manager in Apple OS X Server before 4.0 allows local users to discover cleartext passwords by reading a file after a (1) profile setup or (2) profile edit occurs.
local
apple CWE-310
1.9