Show filters
168 Total Results
Displaying 131-140 of 168
Sort by:
Attacker Value
Unknown

CVE-2010-0501

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Directory traversal vulnerability in FTP Server in Apple Mac OS X Server before 10.6.3 allows remote authenticated users to read arbitrary files via crafted filenames.
0
Attacker Value
Unknown

CVE-2010-0514

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with H.261 encoding.
0
Attacker Value
Unknown

CVE-2010-0516

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with RLE encoding, which triggers memory corruption when the length of decompressed data exceeds that of the allocated heap chunk.
0
Attacker Value
Unknown

CVE-2010-0517

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with M-JPEG encoding, which causes QuickTime to calculate a buffer size using height and width fields, but to use a different field to control the length of a copy operation.
0
Attacker Value
Unknown

CVE-2010-0508

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Mail in Apple Mac OS X before 10.6.3 does not disable the filter rules associated with a deleted mail account, which has unspecified impact and attack vectors.
0
Attacker Value
Unknown

CVE-2010-0497

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Disk Images in Apple Mac OS X before 10.6.3 does not provide the expected warning for an unsafe file type in an internet enabled disk image, which makes it easier for user-assisted remote attackers to execute arbitrary code via a package file type.
0
Attacker Value
Unknown

CVE-2010-0511

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Podcast Producer in Apple Mac OS X 10.6 before 10.6.3 deletes the access restrictions of a Podcast Composer workflow when this workflow is overwritten, which allows attackers to access a workflow via unspecified vectors.
0
Attacker Value
Unknown

CVE-2010-0512

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
The Accounts Preferences implementation in Apple Mac OS X 10.6 before 10.6.3, when a network account server is used, does not support Login Window access control that is based solely on group membership, which allows attackers to bypass intended access restrictions by entering login credentials.
0
Attacker Value
Unknown

CVE-2010-0534

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Wiki Server in Apple Mac OS X 10.6 before 10.6.3 does not enforce the service access control list (SACL) for weblogs during weblog creation, which allows remote authenticated users to publish content via HTTP requests.
0
Attacker Value
Unknown

CVE-2010-0521

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Server Admin in Apple Mac OS X Server before 10.6.3 does not properly enforce authentication for directory binding, which allows remote attackers to obtain potentially sensitive information from Open Directory via unspecified LDAP requests.
0