CVE-2016-1774

MEDIUM

Apple OS X Server <5.1 - Info Disclosure

Title source: llm

Description

The Time Machine server in Server App in Apple OS X Server before 5.1 does not notify the user about ignored permissions during a backup, which makes it easier for remote attackers to obtain sensitive information in opportunistic circumstances by reading backup data that lacks intended restrictions.

Scores

CVSS v3 5.3
EPSS 0.0032
EPSS Percentile 54.3%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Classification

CWE
CWE-284
Status draft

Affected Products (1)

apple/mac_os_x_server < 5.0.15

Timeline

Published Mar 24, 2016
Tracked Since Feb 18, 2026