CVE-2013-5229: Apple Remote Desktop

Low severity, CVSS 3.7. EPSS: 0.3% chance of exploitation in the next 30 days.

The Remote Desktop full-screen feature in Apple OS X before 10.9 and Apple Remote Desktop before 3.7 sends dialog-box text to a connected remote host upon being woken from sleep, which allows physically proximate attackers to bypass intended access restrictions by entering a command in this box.

Affected products

  • Apple Apple Remote Desktop: up to and including 3.6.2
  • Apple Mac OS X: up to and including 10.8.5

Published 2015-11-14. Last modified 2026-06-16.