Show filters
89 Total Results
Displaying 81-89 of 89
Sort by:
Attacker Value
Unknown

CVE-2004-1083

Disclosure Date: December 03, 2004 (last updated February 22, 2025)
Apache for Apple Mac OS X 10.2.8 and 10.3.6 restricts access to files in a case sensitive manner, but the Apple HFS+ filesystem accesses files in a case insensitive manner, which allows remote attackers to read .DS_Store files and files beginning with ".ht" using alternate capitalization.
Attacker Value
Unknown

CVE-2004-1084

Disclosure Date: December 02, 2004 (last updated February 22, 2025)
Apache for Apple Mac OS X 10.2.8 and 10.3.6 allows remote attackers to read files and resource fork content via HTTP requests to certain special file names related to multiple data streams in HFS+, which bypass Apache file handles.
0
Attacker Value
Unknown

CVE-2004-1089

Disclosure Date: December 02, 2004 (last updated February 22, 2025)
Unknown vulnerability in Apple Mac OS X 10.3.6 server, when using Kerberos authentication and Cyrus IMAP allows local users to access mailboxes of other users.
0
Attacker Value
Unknown

CVE-2004-1088

Disclosure Date: December 02, 2004 (last updated February 22, 2025)
Postfix server for Apple Mac OS X 10.3.6, when using CRAM-MD5, allows remote attackers to send mail without authentication by replaying authentication information.
0
Attacker Value
Unknown

CVE-2004-1086

Disclosure Date: December 02, 2004 (last updated February 22, 2025)
Buffer overflow in PSNormalizer for Apple Mac OS X 10.3.6 allows remote attackers to execute arbitrary code via a crafted PostScript input file.
0
Attacker Value
Unknown

CVE-2004-1087

Disclosure Date: December 02, 2004 (last updated February 22, 2025)
Terminal for Apple Mac OS X 10.3.6 may indicate that "Secure Keyboard Entry" is enabled even when it is not, which could result in a false sense of security for the user.
0
Attacker Value
Unknown

CVE-2004-1085

Disclosure Date: December 02, 2004 (last updated February 22, 2025)
Human Interface Toolbox (HIToolBox) for Apple Mac 0S X 10.3.6 allows local users to exit applications via the force-quit key combination, even when the system is running in kiosk mode.
0
Attacker Value
Unknown

CVE-2004-1081

Disclosure Date: December 02, 2004 (last updated February 22, 2025)
The Application Framework (AppKit) for Apple Mac OS X 10.2.8 and 10.3.6 does not properly restrict access to a secure text input field, which allows local users to read keyboard input from other applications within the same window session.
0
Attacker Value
Unknown

CVE-2005-0373

Disclosure Date: October 07, 2004 (last updated February 22, 2025)
Buffer overflow in digestmd5.c CVS release 1.170 (also referred to as digestmda5.c), as used in the DIGEST-MD5 SASL plugin for Cyrus-SASL but not in any official releases, allows remote attackers to execute arbitrary code.
0