Unrated severityNVD Advisory· Published Aug 22, 2012· Updated Apr 29, 2026
CVE-2012-0681
CVE-2012-0681
Description
Apple Remote Desktop before 3.6.1 does not recognize the "Encrypt all network data" setting during connections to third-party VNC servers, which allows remote attackers to obtain cleartext VNC session content by sniffing the network.
Affected products
3cpe:2.3:a:apple:apple_remote_desktop:3.5.2:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:apple:apple_remote_desktop:3.5.2:*:*:*:*:*:*:*
- cpe:2.3:a:apple:apple_remote_desktop:3.5.3:*:*:*:*:*:*:*
- cpe:2.3:a:apple:apple_remote_desktop:3.6.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- lists.apple.com/archives/security-announce/2012/Aug/msg00000.htmlnvdVendor Advisory
- support.apple.com/kb/HT5433nvdVendor Advisory
- www.securityfocus.com/bid/55100nvd
News mentions
0No linked articles in our index yet.