CVE-2014-4447: Apple OS X Server

Low severity, CVSS 1.9. EPSS: 0.3% chance of exploitation in the next 30 days.

Profile Manager in Apple OS X Server before 4.0 allows local users to discover cleartext passwords by reading a file after a (1) profile setup or (2) profile edit occurs.

Affected products

  • Apple OS X Server: up to and including 3.1.2

Published 2014-10-18. Last modified 2026-06-17.