Vulnerability index

Browse CVEs

365 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Safari MEDIUM 6.8
CVE-2008-0035EPSS 5%

Unspecified vulnerability in Foundation, as used in Apple iPhone 1.0 through 1.1.2, iPod touch 1.1 through 1.1.2, and Mac OS X 10.5 through 10.5.1, a…

Mitigation only
Fix from $1,600 2008-01-16
Mac Os X HIGH 9.4
CVE-2007-5856

Quick Look Apple Mac OS X 10.5.1, when previewing an HTML file, does not prevent plug-ins from making network requests, which might allow remote atta…

Mitigation only
Fix from $1,950 2007-12-19
Mac Os X HIGH 9.3
CVE-2007-4708EPSS 5%

Format string vulnerability in Address Book in Apple Mac OS X 10.4.11 allows remote attackers to execute arbitrary code via the URL handler.

Mitigation only
Fix from $1,950 2007-12-19
Mac Os X HIGH 9.3
CVE-2007-4710

Unspecified vulnerability in ColorSync in Apple Mac OS X 10.4.11 allows remote attackers to cause a denial of service (application termination) or ex…

Mitigation only
Fix from $1,950 2007-12-19
Mac Os X HIGH 9.3
CVE-2007-5853

Unspecified vulnerability in IO Storage Family in Apple Mac OS X 10.4.11 allows user-assisted attackers to cause a denial of service (system shutdown…

Mitigation only
Fix from $1,950 2007-12-19
Safari HIGH 9.3
CVE-2007-5859EPSS 6%

Unspecified vulnerability in Safari RSS in Apple Mac OS X 10.4.11 allows remote attackers to cause a denial of service (application termination) or e…

Mitigation only
Fix from $1,950 2007-12-19
Mac Os X HIGH 9.3
CVE-2007-5863EPSS 23%

Software Update in Apple Mac OS X 10.5.1 allows remote attackers to execute arbitrary commands via a man-in-the-middle (MITM) attack between the clie…

Mitigation only
Fix from $1,950 2007-12-19
Mac Os X HIGH 8.8
CVE-2007-4709

Directory traversal vulnerability in CFNetwork in Apple Mac OS X 10.5.1 allows remote attackers to overwrite arbitrary files via a crafted HTTP respo…

Mitigation only
Fix from $1,950 2007-12-19
Mac Os X HIGH 8.8
CVE-2007-5850

Heap-based buffer overflow in Desktop Services in Apple Mac OS X 10.4.11 allows user-assisted attackers to execute arbitrary code via a directory wit…

Mitigation only
Fix from $1,950 2007-12-19
Mac Os X HIGH 7.2
CVE-2007-5848

Buffer overflow in CUPS in Apple Mac OS X 10.4.11 allows local admin users to execute arbitrary code via a crafted URI to the CUPS service.

Mitigation only
Fix from $1,950 2007-12-19
Mac Os X HIGH 7.2
CVE-2007-5860

Unspecified vulnerability in Spin Tracer in Apple Mac OS X 10.5.1 allows local users to execute arbitrary code via unspecified output files, involvin…

Mitigation only
Fix from $1,950 2007-12-19
Mac Os X MEDIUM 6.8
CVE-2007-5861

Unspecified vulnerability in Spotlight in Apple Mac OS X 10.4.11 allows user-assisted attackers to cause a denial of service (application termination…

Mitigation only
Fix from $1,600 2007-12-19
Mac Os X MEDIUM 6.6
CVE-2007-3876

Stack-based buffer overflow in SMB in Apple Mac OS X 10.4.11 allows local users to execute arbitrary code via (1) a long workgroup (-W) option to mou…

No fix yet
Fix from $1,600 2007-12-19
Mac Os X MEDIUM 6.6
CVE-2007-5847

Race condition in the CFURLWriteDataAndPropertiesToResource API in Core Foundation in Apple Mac OS X 10.4.11 creates files with insecure permissions,…

Mitigation only
Fix from $1,600 2007-12-19
Mac Os X MEDIUM 6.4
CVE-2007-5855

Mail in Apple Mac OS X 10.4.11 and 10.5.1, when an SMTP account has been set up using Account Assistant, can use plaintext authentication even when M…

Mitigation only
Fix from $1,600 2007-12-19
Mac Os X MEDIUM 6.4
CVE-2007-5857

Quick Look in Apple Mac OS X 10.5.1 does not prevent a movie from accessing URLs when the movie file is previewed or if an icon is created, which mig…

Mitigation only
Fix from $1,600 2007-12-19
Mac Os X HIGH 7.8
CVE-2007-6276EPSS 9%

The accept_connections function in the virtual private network daemon (vpnd) in Apple Mac OS X 10.5 before 10.5.4 allows remote attackers to cause a …

No fix yet
Fix from $1,950 2007-12-07
Mac Os X HIGH 9.3
CVE-2007-6165EPSS 45%

Mail in Apple Mac OS X Leopard (10.5.1) allows user-assisted remote attackers to execute arbitrary code via an AppleDouble attachment containing an a…

No fix yet
Fix from $1,950 2007-11-29
Mac Os X HIGH 7.2
CVE-2007-4267

Stack-based buffer overflow in the Networking component in Apple Mac OS X 10.4 through 10.4.10 allows local users to execute arbitrary code via a cra…

Mitigation only
Fix from $1,950 2007-11-15
Mac Os X MEDIUM 6.9
CVE-2007-4681

Buffer overflow in CoreFoundation in Apple Mac OS X 10.3.9 and 10.4 through 10.4.10 allows local users to cause a denial of service (application cras…

Mitigation only
Fix from $1,600 2007-11-15
Mac Os X MEDIUM 6.9
CVE-2007-4684

Integer overflow in the kernel in Apple Mac OS X 10.4 through 10.4.10 allows local users to execute arbitrary code via a large num_sels argument to t…

Mitigation only
Fix from $1,600 2007-11-15
Mac Os X HIGH 9.3
CVE-2007-4676EPSS 47%

Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via malformed elements when parsing (1) Po…

Mitigation only
Fix from $1,950 2007-11-07
Mac Os X HIGH 9.3
CVE-2007-4677EPSS 47%

Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via an invalid color table size when parsi…

Mitigation only
Fix from $1,950 2007-11-07
Safari HIGH 9.3
CVE-2007-5450

Unspecified vulnerability in Safari on the Apple iPod touch (aka iTouch) and iPhone 1.1.1 allows user-assisted remote attackers to cause a denial of …

No fix yet
Fix from $1,950 2007-10-14
Safari MEDIUM 5.0
CVE-2007-4812

Buffer overflow in Apple Safari 3.0.3 522.15.5, and other versions before Beta Update 3.0.4, allows remote attackers to cause a denial of service (cr…

Mitigation only
Fix from $1,600 2007-09-11
Mac Os X HIGH 10.0
CVE-2007-3828

Unspecified vulnerability in mDNSResponder in Apple Mac OS X allows remote attackers to execute arbitrary code via unspecified vectors, a related iss…

Mitigation only
Fix from $1,950 2007-07-17
Safari HIGH 7.5
CVE-2007-3718

Multiple unspecified vulnerabilities in the SVG parsing engine in Apple Safari 3 Beta for Windows have unspecified remote attack vectors and impact. …

No fix yet
Fix from $1,950 2007-07-12
Safari HIGH 8.5
CVE-2007-3514

Cross-domain vulnerability in Apple Safari for Windows 3.0.2 allows remote attackers to bypass the Same Origin Policy and access restricted informati…

Mitigation only
Fix from $1,950 2007-07-03
Safari HIGH 7.8
CVE-2007-3482

Cross-domain vulnerability in Apple Safari for Windows 3.0.1 allows remote attackers to bypass the "same origin policy" and access restricted informa…

Mitigation only
Fix from $1,950 2007-06-28
Safari HIGH 9.3
CVE-2007-3376EPSS 6%

Buffer overflow in Apple Safari 3.0.2 on Windows XP SP2 allows user-assisted remote attackers to cause a denial of service (crash) and possibly execu…

No fix yet
Fix from $1,950 2007-06-25