Show filters
72 Total Results
Displaying 31-40 of 72
Sort by:
Attacker Value
Unknown
CVE-2011-3213
Disclosure Date: October 14, 2011 (last updated October 04, 2023)
The File Systems component in Apple Mac OS X before 10.7.2 does not properly track the specific X.509 certificate that a user manually accepted for an initial https WebDAV connection, which allows man-in-the-middle attackers to hijack WebDAV communication by presenting an arbitrary certificate for a subsequent connection.
0
Attacker Value
Unknown
CVE-2011-3222
Disclosure Date: October 14, 2011 (last updated October 04, 2023)
Buffer overflow in QuickTime in Apple Mac OS X before 10.7.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FlashPix file.
0
Attacker Value
Unknown
CVE-2010-0065
Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Disk Images in Apple Mac OS X before 10.6.3 allows user-assisted remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted disk image with bzip2 compression.
0
Attacker Value
Unknown
CVE-2010-0501
Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Directory traversal vulnerability in FTP Server in Apple Mac OS X Server before 10.6.3 allows remote authenticated users to read arbitrary files via crafted filenames.
0
Attacker Value
Unknown
CVE-2010-0503
Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Use-after-free vulnerability in iChat Server in Apple Mac OS X Server 10.5.8 allows remote authenticated users to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.
0
Attacker Value
Unknown
CVE-2010-0497
Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Disk Images in Apple Mac OS X before 10.6.3 does not provide the expected warning for an unsafe file type in an internet enabled disk image, which makes it easier for user-assisted remote attackers to execute arbitrary code via a package file type.
0
Attacker Value
Unknown
CVE-2010-0508
Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Mail in Apple Mac OS X before 10.6.3 does not disable the filter rules associated with a deleted mail account, which has unspecified impact and attack vectors.
0
Attacker Value
Unknown
CVE-2010-0521
Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Server Admin in Apple Mac OS X Server before 10.6.3 does not properly enforce authentication for directory binding, which allows remote attackers to obtain potentially sensitive information from Open Directory via unspecified LDAP requests.
0
Attacker Value
Unknown
CVE-2010-0500
Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Event Monitor in Apple Mac OS X before 10.6.3 does not properly validate hostnames of SSH clients, which allows remote attackers to cause a denial of service (arbitrary client blacklisting) via a crafted DNS PTR record, related to a "plist injection issue."
0
Attacker Value
Unknown
CVE-2010-0063
Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Incomplete blacklist vulnerability in CoreTypes in Apple Mac OS X before 10.6.3 makes it easier for user-assisted remote attackers to execute arbitrary JavaScript via a web page that offers a download with a Content-Type value that is not on the list of possibly unsafe content types for Safari, as demonstrated by the values for the (1) .ibplugin and (2) .url extensions.
0