CVE-2004-0962

Apple Remote Desktop Client 1.2.4 executes a GUI application as root when it is started by an Apple Remote Desktop Administrator application, which allows remote authenticated users to execute arbitrary code when loginwindow is active via Fast User Switching.

Date published : 2004-10-28

http://lists.apple.com/archives/security-announce/2004/Oct/msg00002.html