Skip to main content

Vendor/product archive

apple / mac_os_x CVEs

Beta · best-effort

5,565 CVEs tagged to apple / mac_os_x1,424 Critical, 2,236 High, 1,693 Medium, 212 Low, 0 Unrated.

CVE-2003-1010

Published Mar 29, 2004

Unknown vulnerability in fs_usage in Mac OS X 10.2.8 and 10.3.2 and Mac OS X Server 10.2.8 and 10.3.2 allows local users to gain privileges via unknown attack vectors.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1011

Published Mar 29, 2004

Apple Mac OS X 10.0 through 10.2.8 allows local users with a USB keyboard to gain unauthorized access by holding down the CTRL and C keys when the system is booting, which crashes…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2004-0165

Published Mar 15, 2004

Format string vulnerability in Point-to-Point Protocol (PPP) daemon (pppd) 2.4.0 for Mac OS X 10.3.2 and earlier allows remote attackers to read arbitrary pppd process data, inclu…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0085

Published Mar 3, 2004

Unknown vulnerability in the Mail application for Mac OS X 10.1.5 and 10.2.8 with unknown impact, a different vulnerability than CVE-2004-0086.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0086

Published Mar 3, 2004

Unknown vulnerability in the Mail application for Mac OS X 10.3.2 has unknown impact and attack vectors, a different vulnerability than CVE-2004-0085.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0087

Published Mar 3, 2004

The System Configuration subsystem in Mac OS 10.2.8 and 10.3.2 allows local users to modify network settings, a different vulnerability than CVE-2004-0088.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-0088

Published Mar 3, 2004

The System Configuration subsystem in Mac OS 10.2.8 allows local users to modify network settings, a different vulnerability than CVE-2004-0087.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-0089

Published Mar 3, 2004

Buffer overflow in TruBlueEnvironment in Mac OS X 10.3.x and 10.2.x allows local users to gain privileges via a long environment variable.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0092

Published Mar 3, 2004

Unknown vulnerability in Safari web browser in Mac OS X 10.2.8 and 10.3.2, with unknown impact.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2003-1005

Published Dec 31, 2003

The PKI functionality in Mac OS X 10.2.8 and 10.3.2 allows remote attackers to cause a denial of service (service crash) via malformed ASN.1 sequences.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1411

Published Nov 17, 2003

Format string vulnerability in gm4 (aka m4) on Mac OS X may allow local users to gain privileges if gm4 is called by setuid programs.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2001-1412

Published Nov 17, 2003

nidump on MacOS X before 10.3 allows local users to read the encrypted passwords from the password file by specifying passwd as a command line argument.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2003-0871

Published Nov 3, 2003

Unknown vulnerability in QuickTime Java in Mac OS X v10.3 and Mac OS X Server 10.3 allows attackers to gain "unauthorized access to a system."

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2003-0876

Published Nov 3, 2003

Finder in Mac OS X 10.2.8 and earlier sets global read/write/execute permissions on directories when they are dragged (copied) from a mounted volume such as a disk image (DMG), wh…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2003-0877

Published Nov 3, 2003

Mac OS X before 10.3 with core files enabled allows local users to overwrite arbitrary files and read core files via a symlink attack on core files that are created with predictab…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-0878

Published Nov 3, 2003

slpd daemon in Mac OS X before 10.3 allows local users to overwrite arbitrary files via a symlink attack on a temporary file, a different vulnerability than CVE-2003-0875.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2003-0880

Published Nov 3, 2003

Unknown vulnerability in Mac OS X before 10.3 allows local users to access Dock functions from behind Screen Effects when Full Keyboard Access is enabled using the Keyboard pane i…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-0881

Published Nov 3, 2003

Mail in Mac OS X before 10.3, when configured to use MD5 Challenge Response, uses plaintext authentication if the CRAM-MD5 hashed login fails, which could allow remote attackers t…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2003-0882

Published Nov 3, 2003

Mac OS X before 10.3 initializes the TCP timestamp with a constant number, which allows remote attackers to determine the system's uptime via the ID field in a TCP packet.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 5,501-5,525 of 5,565 CVEsPage 221 of 223