Vulnerability index

Browse CVEs

365 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Mac Os X HIGH 7.5
CVE-2004-0167

DiskArbitration in Mac OS X 10.2.8 and 10.3.2 does not properly initialize writeable removable media.

No fix yet
Fix from $1,950 2004-03-15
Mac Os X HIGH 10.0
CVE-2004-0092

Unknown vulnerability in Safari web browser in Mac OS X 10.2.8 and 10.3.2, with unknown impact.

No fix yet
Fix from $1,950 2004-03-03
Mac Os X MEDIUM 5.0
CVE-2004-0086

Unknown vulnerability in the Mail application for Mac OS X 10.3.2 has unknown impact and attack vectors, a different vulnerability than CVE-2004-0085.

No fix yet
Fix from $1,600 2004-03-03
Safari MEDIUM 5.0
CVE-2003-0975

Apple Safari 1.0 through 1.1 on Mac OS X 10.3.1 and Mac OS X 10.2.8 allows remote attackers to steal user cookies from another domain via a link with…

Mitigation only
Fix from $1,600 2003-12-15
Mac Os X HIGH 7.2
CVE-2001-1411

Format string vulnerability in gm4 (aka m4) on Mac OS X may allow local users to gain privileges if gm4 is called by setuid programs.

Mitigation only
Fix from $1,950 2003-11-17
Darwin Streaming Server HIGH 10.0
CVE-2003-0421

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via an MS-DOS device name (e.g. …

Mitigation only
Fix from $1,950 2003-08-27
Darwin Streaming Server HIGH 10.0
CVE-2003-0426

The installation of Apple QuickTime / Darwin Streaming Server before 4.1.3f starts the administration server with a "Setup Assistant" page that allow…

No fix yet
Fix from $1,950 2003-08-27
Darwin Streaming Server MEDIUM 5.0
CVE-2003-0422

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via a request to view_broadcast.…

Mitigation only
Fix from $1,600 2003-08-27
Darwin Streaming Server MEDIUM 5.0
CVE-2003-0423

parse_xml.cgi in Apple QuickTime / Darwin Streaming Server before 4.1.3g allows remote attackers to obtain the source code for parseable files via th…

No fix yet
Fix from $1,600 2003-08-27
Darwin Streaming Server MEDIUM 5.0
CVE-2003-0424

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to obtain the source code for scripts by appending encoded space (%20…

No fix yet
Fix from $1,600 2003-08-27
Darwin Streaming Server MEDIUM 5.0
CVE-2003-0425

Directory traversal vulnerability in Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to read arbitrary files via a ..…

No fix yet
Fix from $1,600 2003-08-27
802.11n HIGH 7.6
CVE-2003-0270EPSS 11%

The administration capability for Apple AirPort 802.11 wireless access point devices uses weak encryption (XOR with a fixed key) for protecting authe…

Mitigation only
Fix from $1,950 2003-06-16
Safari MEDIUM 5.0
CVE-2003-0355

Safari 1.0 Beta 2 (v73) and earlier does not validate the Common Name (CN) field for X.509 Certificates, which could allow remote attackers to spoof …

Mitigation only
Fix from $1,600 2003-06-09
Mac Os X HIGH 7.2
CVE-2003-0171

DirectoryServices in MacOS X trusts the PATH environment variable to locate and execute the touch command, which allows local users to execute arbitr…

Mitigation only
Fix from $1,950 2003-05-05
Mac Os X MEDIUM 6.4
CVE-2003-0198

Mac OS X before 10.2.5 allows guest users to modify the permissions of the DropBox folder and read unauthorized files.

Mitigation only
Fix from $1,600 2003-05-05
Darwin Streaming Server HIGH 7.5
CVE-2003-0050EPSS 69%

parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to execute arbitrary…

Mitigation only
Fix from $1,950 2003-03-07
Darwin Streaming Server HIGH 7.5
CVE-2003-0054

Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to execute certain code via a request…

Mitigation only
Fix from $1,950 2003-03-07
Quicktime Darwin Mp3 Broadcaster HIGH 7.5
CVE-2003-0055

Buffer overflow in the MP3 broadcasting module of Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remo…

Mitigation only
Fix from $1,950 2003-03-07
Darwin Streaming Server MEDIUM 5.0
CVE-2003-0051

parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to obtain the physic…

Mitigation only
Fix from $1,600 2003-03-07
Darwin Streaming Server MEDIUM 5.0
CVE-2003-0052

parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to list arbitrary di…

Mitigation only
Fix from $1,600 2003-03-07
Tcp Ip Configuration Utility HIGH 7.5
CVE-2002-2373

The default configuration of the TCP/IP printer configuration utility in Apple LaserWriter 12/640 PS printer contains a blank Telnet password, which …

Mitigation only
Fix from $1,950 2002-12-31
Mac Os X MEDIUM 5.0
CVE-2002-2326

The default configuration of Mail.app in Mac OS X 10.0 through 10.0.4 and 10.1 through 10.1.5 sends iDisk authentication credentials in cleartext whe…

Mitigation only
Fix from $1,600 2002-12-31
Mac Os X HIGH 7.5
CVE-2002-0676

SoftwareUpdate for MacOS 10.1.x does not use authentication when downloading a software update, which could allow remote attackers to execute arbitra…

No fix yet
Fix from $1,950 2002-07-11
Claris Emailer HIGH 7.5
CVE-2001-1531

Buffer overflow in Claris Emailer 2.0v2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an email attachm…

Mitigation only
Fix from $1,950 2001-12-31
Personal Web Sharing MEDIUM 5.0
CVE-2001-1575

Apple Personal Web Sharing (PWS) 1.1, 1.5, and 1.5.5, when Web Sharing authentication is enabled, allows remote attackers to cause a denial of servic…

Mitigation only
Fix from $1,600 2001-12-31
Mac Os X HIGH 7.5
CVE-2001-0720

Internet Explorer 5.1 for Macintosh on Mac OS X allows remote attackers to execute arbitrary commands by causing a BinHex or MacBinary file type to b…

Mitigation only
Fix from $1,950 2001-12-06
Personal Web Sharing MEDIUM 5.0
CVE-2001-0649EPSS 5%

Personal Web Sharing 1.5.5 allows a remote attacker to cause a denial of service via a long HTTP request.

No fix yet
Fix from $1,600 2001-09-20
Mac Os X HIGH 7.5
CVE-2001-1446

Find-By-Content in Mac OS X 10.0 through 10.0.4 creates world-readable index files named .FBCIndex in every directory, which allows remote attackers …

Mitigation only
Fix from $1,950 2001-09-11
macOS HIGH 7.2
CVE-2001-0102

"Multiple Users" Control Panel in Mac OS 9 allows Normal users to gain Owner privileges by removing the Users & Groups Data File, which effectively r…

No fix yet
Fix from $1,950 2001-02-12
Appleshare MEDIUM 5.0
CVE-2000-0346

AppleShare IP 6.1 and later allows a remote attacker to read potentially sensitive information via an invalid range request to the web server.

Mitigation only
Fix from $1,600 2000-05-02