Vulnerability index

Browse CVEs

365 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Mac Os X Server MEDIUM 5.0
CVE-2010-0523

Wiki Server in Apple Mac OS X 10.5.8 does not restrict the file types of uploaded files, which allows remote attackers to obtain sensitive informatio…

Mitigation only
Fix from $1,600 2010-03-30
Safari HIGH 9.3
CVE-2010-1176EPSS 9%

Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary…

No fix yet
Fix from $1,950 2010-03-29
Safari HIGH 9.3
CVE-2010-1177EPSS 7%

Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary…

No fix yet
Fix from $1,950 2010-03-29
Safari HIGH 9.3
CVE-2010-1179EPSS 9%

Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary…

No fix yet
Fix from $1,950 2010-03-29
Safari HIGH 9.3
CVE-2010-1180EPSS 8%

Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary…

No fix yet
Fix from $1,950 2010-03-29
Webkit MEDIUM 5.8
CVE-2010-1126

The JavaScript implementation in WebKit allows remote attackers to send selected keystrokes to a form field in a hidden frame, instead of the intende…

Mitigation only
Fix from $1,600 2010-03-26
Safari HIGH 10.0
CVE-2010-1120EPSS 5%

Unspecified vulnerability in Safari 4 on Apple Mac OS X 10.6 allows remote attackers to execute arbitrary code via unknown vectors, as demonstrated b…

Mitigation only
Fix from $1,950 2010-03-25
Safari MEDIUM 5.0
CVE-2010-1099

Integer overflow in Apple Safari allows remote attackers to bypass intended port restrictions on outbound TCP connections via a port number outside t…

Mitigation only
Fix from $1,600 2010-03-24
Safari MEDIUM 5.0
CVE-2010-1029EPSS 10%

Stack consumption vulnerability in the WebCore::CSSSelector function in WebKit, as used in Apple Safari 4.0.4, Apple Safari on iPhone OS and iPhone O…

No fix yet
Fix from $1,600 2010-03-19
Airport Express MEDIUM 5.0
CVE-2010-0962

The FTP proxy server in Apple AirPort Express, AirPort Extreme, and Time Capsule with firmware 7.5 does not restrict the IP address and port specifie…

No fix yet
Fix from $1,600 2010-03-10
Cups MEDIUM 6.9
CVE-2010-0393

The _cupsGetlang function, as used by lppasswd.c in lppasswd in CUPS 1.2.2, 1.3.7, 1.3.9, and 1.4.1, relies on an environment variable to determine t…

Mitigation only
Fix from $1,600 2010-03-05
Safari MEDIUM 5.0
CVE-2010-0924

cfnetwork.dll 1.450.5.0 in CFNetwork, as used by safari.exe 531.21.10 in Apple Safari 4.0.3 and 4.0.4 on Windows, allows remote attackers to cause a …

No fix yet
Fix from $1,600 2010-03-03
Safari MEDIUM 5.0
CVE-2010-0925

cfnetwork.dll 1.450.5.0 in CFNetwork, as used by safari.exe 531.21.10 in Apple Safari 4.0.4 on Windows, allows remote attackers to cause a denial of …

No fix yet
Fix from $1,600 2010-03-03
Mac Os X HIGH 8.8
CVE-2010-0037

Buffer overflow in Image RAW in Apple Mac OS X 10.5.8 and 10.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (appl…

Mitigation only
Fix from $1,950 2010-01-20
Safari MEDIUM 5.0
CVE-2010-0314EPSS 7%

Apple Safari allows remote attackers to discover a redirect's target URL, for the session of a specific user of a web site, by placing the site's URL…

No fix yet
Fix from $1,600 2010-01-14
Safari HIGH 9.3
CVE-2009-4186EPSS 7%

Stack consumption vulnerability in Apple Safari 4.0.3 on Windows allows remote attackers to cause a denial of service (application crash) via a long …

No fix yet
Fix from $1,950 2009-12-03
Iphone Os HIGH 7.5
CVE-2009-3273

iPhone Mail in Apple iPhone OS, and iPhone OS for iPod touch, does not validate X.509 certificates, which allows man-in-the-middle attackers to spoof…

Mitigation only
Fix from $1,950 2009-09-21
Safari MEDIUM 5.0
CVE-2009-3272EPSS 6%

Stack consumption vulnerability in WebKit.dll in WebKit in Apple Safari 3.2.3, and possibly other versions before 4.1.2, allows remote attackers to c…

No fix yet
Fix from $1,600 2009-09-21
Safari MEDIUM 5.8
CVE-2009-2420

Apple Safari 3.2.3 does not properly implement the file: protocol handler, which allows remote attackers to read arbitrary files or cause a denial of…

Mitigation only
Fix from $1,600 2009-07-09
Safari MEDIUM 5.0
CVE-2009-2421

The CFCharacterSetInitInlineBuffer method in CoreFoundation.dll in Apple Safari 3.2.3 allows remote attackers to cause a denial of service (NULL poin…

Mitigation only
Fix from $1,600 2009-07-09
Safari HIGH 7.1
CVE-2009-1692

WebKit before r41741, as used in Apple iPhone OS 1.0 through 2.2.1, iPhone OS for iPod touch 1.1 through 2.2.1, Safari, and other software, allows re…

No fix yet
Fix from $1,950 2009-06-19
Safari HIGH 9.3
CVE-2009-1600

Apple Safari executes DOM calls in response to a javascript: URI in the target attribute of a submit element within a form contained in an inline PDF…

Mitigation only
Fix from $1,950 2009-05-11
Safari HIGH 9.3
CVE-2009-1060

Unspecified vulnerability in Apple Safari on Mac OS X 10.5.6 allows remote attackers to execute arbitrary code via unknown vectors triggered by click…

No fix yet
Fix from $1,950 2009-03-24
Safari HIGH 9.3
CVE-2009-1042

Unspecified vulnerability in Apple Safari on Mac OS X 10.5.6 allows remote attackers to execute arbitrary code via unknown vectors triggered by click…

Mitigation only
Fix from $1,950 2009-03-23
Safari MEDIUM 5.0
CVE-2009-0744EPSS 7%

Apple Safari 4 Beta build 528.16 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a feeds: U…

No fix yet
Fix from $1,600 2009-02-27
Mac Os X MEDIUM 5.5
CVE-2009-0141

XTerm in Apple Mac OS X 10.4.11 and 10.5.6, when used with luit, creates tty devices with insecure world-writable permissions, which allows local use…

Mitigation only
Fix from $1,600 2009-02-13
Mac Os X HIGH 7.8
CVE-2009-0018

The Remote Apple Events server in Apple Mac OS X 10.4.11 and 10.5.6 does not properly initialize a buffer, which allows remote attackers to read port…

Mitigation only
Fix from $1,950 2009-02-13
Mac Os X HIGH 7.5
CVE-2009-0019

Remote Apple Events in Apple Mac OS X 10.4.11 and 10.5.6 allows remote attackers to cause a denial of service (application termination) or obtain sen…

Mitigation only
Fix from $1,950 2009-02-13
Mac Os X MEDIUM 6.8
CVE-2009-0009

Unspecified vulnerability in the Pixlet codec in Apple Mac OS X 10.4.11 and 10.5.6 allows remote attackers to cause a denial of service (application …

Mitigation only
Fix from $1,600 2009-02-13
Cups MEDIUM 6.9
CVE-2009-0032

CUPS on Mandriva Linux 2008.0, 2008.1, 2009.0, Corporate Server (CS) 3.0 and 4.0, and Multi Network Firewall (MNF) 2.0 allows local users to overwrit…

Mitigation only
Fix from $1,600 2009-01-27