Show filters
149 Total Results
Displaying 131-140 of 149
Sort by:
Attacker Value
Unknown

CVE-2010-0514

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with H.261 encoding.
0
Attacker Value
Unknown

CVE-2010-0511

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Podcast Producer in Apple Mac OS X 10.6 before 10.6.3 deletes the access restrictions of a Podcast Composer workflow when this workflow is overwritten, which allows attackers to access a workflow via unspecified vectors.
0
Attacker Value
Unknown

CVE-2010-0534

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Wiki Server in Apple Mac OS X 10.6 before 10.6.3 does not enforce the service access control list (SACL) for weblogs during weblog creation, which allows remote authenticated users to publish content via HTTP requests.
0
Attacker Value
Unknown

CVE-2010-0521

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Server Admin in Apple Mac OS X Server before 10.6.3 does not properly enforce authentication for directory binding, which allows remote attackers to obtain potentially sensitive information from Open Directory via unspecified LDAP requests.
0
Attacker Value
Unknown

CVE-2010-0512

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
The Accounts Preferences implementation in Apple Mac OS X 10.6 before 10.6.3, when a network account server is used, does not support Login Window access control that is based solely on group membership, which allows attackers to bypass intended access restrictions by entering login credentials.
0
Attacker Value
Unknown

CVE-2010-0524

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
The default configuration of the FreeRADIUS server in Apple Mac OS X Server before 10.6.3 permits EAP-TLS authenticated connections on the basis of an arbitrary client certificate, which allows remote attackers to obtain network connectivity via a crafted RADIUS Access Request message.
0
Attacker Value
Unknown

CVE-2010-0537

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
DesktopServices in Apple Mac OS X 10.6 before 10.6.3 does not properly resolve pathnames in certain circumstances involving an application's save panel, which allows user-assisted remote attackers to trigger unintended remote file copying via a crafted share name.
0
Attacker Value
Unknown

CVE-2010-0062

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in quicktime.qts in CoreMedia and QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a malformed .3g2 movie file with H.263 encoding that triggers an incorrect buffer length calculation.
0
Attacker Value
Unknown

CVE-2010-0526

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in QuickTimeMPEG.qtx in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted genl atom in a QuickTime movie file with MPEG encoding, which is not properly handled during decompression.
0
Attacker Value
Unknown

CVE-2010-0060

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
CoreAudio in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted audio content with QDMC encoding.
0