{"api_version":"1","generated_at":"2026-07-23T09:01:11+00:00","cve":"CVE-2005-2742","urls":{"html":"https://cve.report/CVE-2005-2742","api":"https://cve.report/api/cve/CVE-2005-2742.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2005-2742","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2005-2742"},"summary":{"title":"CVE-2005-2742","description":"SecurityAgent in Apple Mac OS X 10.4.2, under certain circumstances, can cause the \"Switch User...\" button to appear even though the \"Enable fast user switching\" setting is disabled, which can allow attackers with physical access to gain access to the desktop and bypass the \"Require password to wake this computer from sleep or screen saver\" setting.","state":"PUBLISHED","assigner":"mitre","published_at":"2005-10-26 00:02:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"4.6","severity":"","vector":"AV:L/AC:L/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://www.auscert.org.au/5509","name":"http://www.auscert.org.au/5509","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"AusCERT - ESB-2005.0732 -- APPLE-SA-2005-09-22 -- Security Update 2005-008","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://secunia.com/advisories/16920/","name":"http://secunia.com/advisories/16920/","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"Secunia - Advisories - Mac OS X Security Update Fixes Multiple Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.apple.com/archives/security-announce/2005/Sep/msg00002.html","name":"http://lists.apple.com/archives/security-announce/2005/Sep/msg00002.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"APPLE-SA-2005-09-22 Security Update 2005-008","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.ciac.org/ciac/bulletins/p-312.shtml","name":"http://www.ciac.org/ciac/bulletins/p-312.shtml","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"],"title":"P-312: Apple Security Update 2005-008","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2005-2742","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2005-2742","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2005","cve_id":"2742","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"mac_os_x","cpe6":"10.4.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"2742","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"mac_os_x_server","cpe6":"10.4.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T22:45:01.911Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"P-312","tags":["third-party-advisory","government-resource","x_refsource_CIAC","x_transferred"],"url":"http://www.ciac.org/ciac/bulletins/p-312.shtml"},{"name":"ESB-2005.0732","tags":["third-party-advisory","x_refsource_AUSCERT","x_transferred"],"url":"http://www.auscert.org.au/5509"},{"name":"APPLE-SA-2005-09-22","tags":["vendor-advisory","x_refsource_APPLE","x_transferred"],"url":"http://lists.apple.com/archives/security-announce/2005/Sep/msg00002.html"},{"name":"16920","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/16920/"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"descriptions":[{"lang":"en","value":"SecurityAgent in Apple Mac OS X 10.4.2, under certain circumstances, can cause the \"Switch User...\" button to appear even though the \"Enable fast user switching\" setting is disabled, which can allow attackers with physical access to gain access to the desktop and bypass the \"Require password to wake this computer from sleep or screen saver\" setting."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2005-10-25T04:00:00.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"P-312","tags":["third-party-advisory","government-resource","x_refsource_CIAC"],"url":"http://www.ciac.org/ciac/bulletins/p-312.shtml"},{"name":"ESB-2005.0732","tags":["third-party-advisory","x_refsource_AUSCERT"],"url":"http://www.auscert.org.au/5509"},{"name":"APPLE-SA-2005-09-22","tags":["vendor-advisory","x_refsource_APPLE"],"url":"http://lists.apple.com/archives/security-announce/2005/Sep/msg00002.html"},{"name":"16920","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/16920/"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2005-2742","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"SecurityAgent in Apple Mac OS X 10.4.2, under certain circumstances, can cause the \"Switch User...\" button to appear even though the \"Enable fast user switching\" setting is disabled, which can allow attackers with physical access to gain access to the desktop and bypass the \"Require password to wake this computer from sleep or screen saver\" setting."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"P-312","refsource":"CIAC","url":"http://www.ciac.org/ciac/bulletins/p-312.shtml"},{"name":"ESB-2005.0732","refsource":"AUSCERT","url":"http://www.auscert.org.au/5509"},{"name":"APPLE-SA-2005-09-22","refsource":"APPLE","url":"http://lists.apple.com/archives/security-announce/2005/Sep/msg00002.html"},{"name":"16920","refsource":"SECUNIA","url":"http://secunia.com/advisories/16920/"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2005-2742","datePublished":"2005-10-25T04:00:00.000Z","dateReserved":"2005-08-30T00:00:00.000Z","dateUpdated":"2024-09-17T04:19:20.693Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2005-10-26 00:02:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:apple:mac_os_x:10.4.2:*:*:*:*:*:*:*","matchCriteriaId":"CF824694-52DE-44E3-ACAD-60B2A84CD3CE"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:mac_os_x_server:10.4.2:*:*:*:*:*:*:*","matchCriteriaId":"8A132487-E89F-4D0D-8366-14AFC904811F"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2005","CveId":"2742","Ordinal":"1","Title":"CVE-2005-2742","CVE":"CVE-2005-2742","Year":"2005"},"notes":[{"CveYear":"2005","CveId":"2742","Ordinal":"1","NoteData":"SecurityAgent in Apple Mac OS X 10.4.2, under certain circumstances, can cause the \"Switch User...\" button to appear even though the \"Enable fast user switching\" setting is disabled, which can allow attackers with physical access to gain access to the desktop and bypass the \"Require password to wake this computer from sleep or screen saver\" setting.","Type":"Description","Title":"CVE-2005-2742"},{"CveYear":"2005","CveId":"2742","Ordinal":"2","NoteData":"2005-10-25","Type":"Other","Title":"Published"}]}}}