Show filters
21 Total Results
Displaying 11-20 of 21
Sort by:
Attacker Value
Unknown
CVE-2014-1269
Disclosure Date: February 27, 2014 (last updated October 05, 2023)
WebKit, as used in Apple Safari before 6.1.2 and 7.x before 7.0.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1268 and CVE-2014-1270.
0
Attacker Value
Unknown
CVE-2014-1268
Disclosure Date: February 27, 2014 (last updated October 05, 2023)
WebKit, as used in Apple Safari before 6.1.2 and 7.x before 7.0.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1269 and CVE-2014-1270.
0
Attacker Value
Unknown
CVE-2013-0982
Disclosure Date: June 05, 2013 (last updated October 05, 2023)
The Private Browsing feature in CFNetwork in Apple Mac OS X before 10.8.4 does not prevent storage of permanent cookies upon exit from Safari, which might allow physically proximate attackers to bypass cookie-based authentication by leveraging an unattended workstation.
0
Attacker Value
Unknown
CVE-2013-0990
Disclosure Date: June 05, 2013 (last updated October 05, 2023)
SMB in Apple Mac OS X before 10.8.4, when file sharing is enabled, allows remote authenticated users to create or modify files outside of a shared directory via unspecified vectors.
0
Attacker Value
Unknown
CVE-2013-0975
Disclosure Date: June 05, 2013 (last updated October 05, 2023)
Buffer overflow in QuickDraw Manager in Apple Mac OS X before 10.8.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PICT image.
0
Attacker Value
Unknown
CVE-2013-1024
Disclosure Date: June 05, 2013 (last updated October 05, 2023)
CoreMedia Playback in Apple Mac OS X before 10.8.4 does not properly initialize memory during the processing of text tracks, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file.
0
Attacker Value
Unknown
CVE-2013-0973
Disclosure Date: March 15, 2013 (last updated October 05, 2023)
Software Update in Apple Mac OS X through 10.7.5 does not prevent plugin loading within the marketing-text WebView, which allows man-in-the-middle attackers to execute plugin code by modifying the client-server data stream.
0
Attacker Value
Unknown
CVE-2013-0967
Disclosure Date: March 15, 2013 (last updated October 05, 2023)
CoreTypes in Apple Mac OS X before 10.8.3 includes JNLP files in the list of safe file types, which allows remote attackers to bypass a Java plug-in disabled setting, and trigger the launch of Java Web Start applications, via a crafted web site.
0
Attacker Value
Unknown
CVE-2013-0966
Disclosure Date: March 15, 2013 (last updated October 05, 2023)
The Apple mod_hfs_apple module for the Apache HTTP Server in Apple Mac OS X before 10.8.3 does not properly handle ignorable Unicode characters, which allows remote attackers to bypass intended directory authentication requirements via a crafted pathname in a URI.
0
Attacker Value
Unknown
CVE-2013-0971
Disclosure Date: March 15, 2013 (last updated October 05, 2023)
Use-after-free vulnerability in PDFKit in Apple Mac OS X before 10.8.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted ink annotations in a PDF document.
0