CVE-2007-3184

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
12/06/2007
Last modified:
09/04/2025

Description

Cisco Trust Agent (CTA) before 2.1.104.0, when running on MacOS X, allows attackers with physical access to bypass authentication and modify System Preferences, including passwords, by invoking the Apple Menu when the Access Control Server (ACS) produces a user notification message after posture validation.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cisco:trust_agent:*:*:*:*:*:*:*:* 2.1.104.0 (excluding)
cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*