Unrated severityNVD Advisory· Published Oct 3, 2006· Updated Jun 16, 2026
CVE-2006-4387
CVE-2006-4387
Description
Apple Mac OS X 10.4 through 10.4.7, when the administrator clears the "Allow user to administer this computer" checkbox in System Preferences for a user, does not remove the user's account from the appserveradm or appserverusr groups, which still allows the user to manage WebObjects applications.
Affected products
9cpe:2.3:o:apple:mac_os_x:10.4:*:*:*:*:*:*:*+ 8 more
- cpe:2.3:o:apple:mac_os_x:10.4:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.4.1:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.4.2:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.4.3:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.4.4:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.4.5:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.4.6:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.4.7:*:*:*:*:*:*:*
- (no CPE)range: >=10.4, <=10.4.7
Patches
Vulnerability mechanics
References
7- lists.apple.com/archives/security-announce/2006/Sep/msg00002.htmlnvdPatch
- secunia.com/advisories/22187nvdPatchVendor Advisory
- www.securityfocus.com/bid/20271nvdPatch
- securitytracker.com/idnvd
- www.osvdb.org/29273nvd
- www.vupen.com/english/advisories/2006/3852nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/29296nvd
News mentions
0No linked articles in our index yet.