The Private Browsing feature in CFNetwork in Apple Mac OS X before 10.8.4 does not prevent storage of permanent cookies upon exit from Safari, which might allow physically proximate attackers to bypass cookie-based authentication by leveraging an unattended workstation.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: apple
Published: 2013-06-05T10:00:00Z
Updated: 2024-09-16T22:35:28.459Z
Reserved: 2013-01-10T00:00:00Z
Link: CVE-2013-0982
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2013-06-05T14:39:55.443
Modified: 2013-06-05T15:13:20.693
Link: CVE-2013-0982
Redhat
No data.