Vulnerability Details CVE-2005-1387
Cocktail 3.5.4 and possibly earlier in Mac OS X passes the administrative password on the command line to sudo in cleartext, which allows local users to gain sensitive information by running listing processes.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 25.9%
CVSS Severity
CVSS v2 Score 7.2
Products affected by CVE-2005-1387
-
cpe:2.3:a:kristofer_szymanski:cocktail:3.5.4