The Private Browsing feature in CFNetwork in Apple Mac OS X before 10.8.4 does not prevent storage of permanent cookies upon exit from Safari, which might allow physically proximate attackers to bypass cookie-based authentication by leveraging an unattended workstation.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published: 2013-06-05T10:00:00Z

Updated: 2024-09-16T22:35:28.459Z

Reserved: 2013-01-10T00:00:00Z

Link: CVE-2013-0982

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2013-06-05T14:39:55.443

Modified: 2013-06-05T15:13:20.693

Link: CVE-2013-0982

cve-icon Redhat

No data.