Show filters
29 Total Results
Displaying 21-29 of 29
Sort by:
Attacker Value
Unknown
CVE-2012-3719
Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Mail in Apple Mac OS X before 10.7.5 does not properly handle embedded web plugins, which allows remote attackers to execute arbitrary plugin code via an e-mail message that triggers the loading of a third-party plugin.
0
Attacker Value
Unknown
CVE-2012-3716
Disclosure Date: September 20, 2012 (last updated October 05, 2023)
CoreText in Apple Mac OS X 10.7.x before 10.7.5 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds write or read) via a crafted text glyph.
0
Attacker Value
Unknown
CVE-2012-3718
Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Apple Mac OS X before 10.7.5 and 10.8.x before 10.8.2 allows local users to read passwords entered into Login Window (aka LoginWindow) or Screen Saver Unlock by installing an input method that intercepts keystrokes.
0
Attacker Value
Unknown
CVE-2012-3722
Disclosure Date: September 20, 2012 (last updated October 05, 2023)
The Sorenson codec in QuickTime in Apple Mac OS X before 10.7.5, and in CoreMedia in iOS before 6, accesses uninitialized memory locations, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with Sorenson encoding.
0
Attacker Value
Unknown
CVE-2012-3723
Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Apple Mac OS X before 10.7.5 does not properly handle the bNbrPorts field of a USB hub descriptor, which allows physically proximate attackers to execute arbitrary code or cause a denial of service (memory corruption and system crash) by attaching a USB device.
0
Attacker Value
Unknown
CVE-2012-3721
Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Profile Manager in Apple Mac OS X before 10.7.5 does not properly perform authentication for the Device Management private interface, which allows attackers to enumerate managed devices via unspecified vectors.
0
Attacker Value
Unknown
CVE-2012-3720
Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Mobile Accounts in Apple Mac OS X before 10.7.5 and 10.8.x before 10.8.2 saves password hashes for external-account use even if external accounts are not enabled, which might allow remote attackers to determine passwords via unspecified access to a mobile account.
0
Attacker Value
Unknown
CVE-2012-0652
Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Login Window in Apple Mac OS X 10.7.3, when Legacy File Vault or networked home directories are enabled, does not properly restrict what is written to the system log for network logins, which allows local users to obtain sensitive information by reading the log.
0
Attacker Value
Unknown
CVE-2012-0656
Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Race condition in LoginUIFramework in Apple Mac OS X 10.7.x before 10.7.4, when the Guest account is enabled, allows physically proximate attackers to login to arbitrary accounts by entering the account name and no password.
0