Show filters
130 Total Results
Displaying 1-10 of 130
Sort by:
Attacker Value
Unknown

CVE-2014-4453

Disclosure Date: November 18, 2014 (last updated October 05, 2023)
Apple iOS before 8.1.1 and OS X before 10.10.1 include location data during establishment of a Spotlight Suggestions server connection by Spotlight or Safari, which might allow remote attackers to obtain sensitive information via unspecified vectors.
0
Attacker Value
Unknown

CVE-2014-4460

Disclosure Date: November 18, 2014 (last updated October 05, 2023)
CFNetwork in Apple iOS before 8.1.1 and OS X before 10.10.1 does not properly clear the browsing cache upon a transition out of private-browsing mode, which makes it easier for physically proximate attackers to obtain sensitive information by reading cache files.
0
Attacker Value
Unknown

CVE-2014-4458

Disclosure Date: November 18, 2014 (last updated October 05, 2023)
The "System Profiler About This Mac" component in Apple OS X before 10.10.1 includes extraneous cookie data in system-model requests, which might allow remote attackers to obtain sensitive information via unspecified vectors.
0
Attacker Value
Unknown

CVE-2013-0984

Disclosure Date: June 05, 2013 (last updated October 05, 2023)
Directory Service in Apple Mac OS X through 10.6.8 allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a crafted message.
0
Attacker Value
Unknown

CVE-2012-3719

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Mail in Apple Mac OS X before 10.7.5 does not properly handle embedded web plugins, which allows remote attackers to execute arbitrary plugin code via an e-mail message that triggers the loading of a third-party plugin.
0
Attacker Value
Unknown

CVE-2012-3718

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Apple Mac OS X before 10.7.5 and 10.8.x before 10.8.2 allows local users to read passwords entered into Login Window (aka LoginWindow) or Screen Saver Unlock by installing an input method that intercepts keystrokes.
0
Attacker Value
Unknown

CVE-2012-3722

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
The Sorenson codec in QuickTime in Apple Mac OS X before 10.7.5, and in CoreMedia in iOS before 6, accesses uninitialized memory locations, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with Sorenson encoding.
0
Attacker Value
Unknown

CVE-2012-3723

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Apple Mac OS X before 10.7.5 does not properly handle the bNbrPorts field of a USB hub descriptor, which allows physically proximate attackers to execute arbitrary code or cause a denial of service (memory corruption and system crash) by attaching a USB device.
0
Attacker Value
Unknown

CVE-2012-3721

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Profile Manager in Apple Mac OS X before 10.7.5 does not properly perform authentication for the Device Management private interface, which allows attackers to enumerate managed devices via unspecified vectors.
0
Attacker Value
Unknown

CVE-2012-0650

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Buffer overflow in the DirectoryService Proxy in DirectoryService in Apple Mac OS X through 10.6.8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.
0