Kerberos Ticket Cache Privilege Escalation Vulnerability in Apple OS X

Kerberos Ticket Cache Privilege Escalation Vulnerability in Apple OS X

CVE-2014-4444 · MEDIUM Severity

AV:L/AC:M/AU:N/C:P/I:P/A:P

SecurityAgent in Apple OS X before 10.10 does not ensure that a Kerberos ticket is in the cache for the correct user, which allows local users to gain privileges in opportunistic circumstances by leveraging a Fast User Switching login.

Learn more about our User Device Pen Test.