CVE Published: 24/10/2013 |
CVE Updated: 17/09/2024 |
CVE Year: 2013 Source: apple |
Vendor: n/a |
Product: n/a Status : PUBLISHED
CVE-2013-5136 Description
Apple Remote Desktop before 3.7 does not properly use server authentication-type information during decisions about whether to present an unencrypted-connection warning message, which allows remote attackers to obtain sensitive information in opportunistic circumstances by sniffing the network during an unintended cleartext VNC session.