Vulnerability index

Browse CVEs

6,692 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Safari HIGH 8.8
CVE-2010-0050EPSS 12%

Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (a…

Fix: 4.0 / 4.0.5+
Fix from $1,950 2010-03-15
Safari HIGH 9.3
CVE-2010-0040EPSS 6%

Integer overflow in ColorSync in Apple Safari before 4.0.5 on Windows, and iTunes before 9.1, allows remote attackers to execute arbitrary code or ca…

Fix: after 4.0.4
Fix from $1,950 2010-03-15
Safari HIGH 9.3
CVE-2010-0043EPSS 6%

ImageIO in Apple Safari before 4.0.5 and iTunes before 9.1 on Windows allows remote attackers to execute arbitrary code or cause a denial of service …

Fix: after 4.0.4
Fix from $1,950 2010-03-15
Safari HIGH 9.3
CVE-2010-0045

Apple Safari before 4.0.5 on Windows does not properly validate external URL schemes, which allows remote attackers to open local files and execute a…

Fix: after 4.0.4
Fix from $1,950 2010-03-15
Safari HIGH 9.3
CVE-2010-0046EPSS 6%

The Cascading Style Sheets (CSS) implementation in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a d…

Fix: after 4.0.4
Fix from $1,950 2010-03-15
Safari HIGH 8.8
CVE-2010-0047EPSS 5%

Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (a…

Fix: after 4.0.4
Fix from $1,950 2010-03-15
Safari HIGH 8.8
CVE-2010-0048EPSS 5%

Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (a…

Fix: after 4.0.4
Fix from $1,950 2010-03-15
Airport Express MEDIUM 5.0
CVE-2010-0962

The FTP proxy server in Apple AirPort Express, AirPort Extreme, and Time Capsule with firmware 7.5 does not restrict the IP address and port specifie…

No fix yet
Fix from $1,600 2010-03-10
Cups MEDIUM 6.9
CVE-2010-0393

The _cupsGetlang function, as used by lppasswd.c in lppasswd in CUPS 1.2.2, 1.3.7, 1.3.9, and 1.4.1, relies on an environment variable to determine t…

Mitigation only
Fix from $1,600 2010-03-05
Safari MEDIUM 5.0
CVE-2010-0924

cfnetwork.dll 1.450.5.0 in CFNetwork, as used by safari.exe 531.21.10 in Apple Safari 4.0.3 and 4.0.4 on Windows, allows remote attackers to cause a …

No fix yet
Fix from $1,600 2010-03-03
Safari MEDIUM 5.0
CVE-2010-0925

cfnetwork.dll 1.450.5.0 in CFNetwork, as used by safari.exe 531.21.10 in Apple Safari 4.0.4 on Windows, allows remote attackers to cause a denial of …

No fix yet
Fix from $1,600 2010-03-03
Mac Os X HIGH 8.8
CVE-2010-0037

Buffer overflow in Image RAW in Apple Mac OS X 10.5.8 and 10.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (appl…

Mitigation only
Fix from $1,950 2010-01-20
Mac Os X HIGH 7.8
CVE-2010-0036

Buffer overflow in CoreAudio in Apple Mac OS X 10.5.8 and 10.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (appl…

Patch available
Fix from $1,950 2010-01-20
Safari MEDIUM 5.0
CVE-2010-0314EPSS 7%

Apple Safari allows remote attackers to discover a redirect's target URL, for the session of a specific user of a web site, by placing the site's URL…

No fix yet
Fix from $1,600 2010-01-14
Mac Os X MEDIUM 5.0
CVE-2009-2843

Java for Mac OS X 10.5 before Update 6 and 10.6 before Update 1 accepts expired certificates for applets, which makes it easier for remote attackers …

Patch available
Fix from $1,600 2009-12-08
Safari HIGH 9.3
CVE-2009-4186EPSS 7%

Stack consumption vulnerability in Apple Safari 4.0.3 on Windows allows remote attackers to cause a denial of service (application crash) via a long …

No fix yet
Fix from $1,950 2009-12-03
Safari HIGH 9.3
CVE-2009-3384

Multiple unspecified vulnerabilities in WebKit in Apple Safari before 4.0.4 on Windows allow remote FTP servers to execute arbitrary code, cause a de…

Fix: after 4.0.3
Fix from $1,950 2009-11-13
Safari MEDIUM 6.8
CVE-2009-2816

The implementation of Cross-Origin Resource Sharing (CORS) in WebKit, as used in Apple Safari before 4.0.4 and Google Chrome before 3.0.195.33, inclu…

Fix: 3.0.195.33 / 4.0+
Fix from $1,600 2009-11-13
Safari MEDIUM 5.0
CVE-2009-2841

The HTMLMediaElement::loadResource function in html/HTMLMediaElement.cpp in WebCore in WebKit before r49480, as used in Apple Safari before 4.0.4 on …

Fix: after 4.0.3
Fix from $1,600 2009-11-13
Mac Os X HIGH 9.3
CVE-2009-2819

AFP Client in Apple Mac OS X 10.5.8 allows remote AFP servers to execute arbitrary code or cause a denial of service (memory corruption and system cr…

Patch available
Fix from $1,950 2009-11-10
Mac Os X HIGH 7.5
CVE-2009-2828

The server in DirectoryService in Apple Mac OS X 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrup…

Patch available
Fix from $1,950 2009-11-10
Mac Os X HIGH 7.5
CVE-2009-2833

Buffer overflow in the UCCompareTextDefault API in International Components for Unicode in Apple Mac OS X 10.5.8 allows context-dependent attackers t…

Patch available
Fix from $1,950 2009-11-10
Mac Os X MEDIUM 6.8
CVE-2009-2810

Launch Services in Apple Mac OS X 10.6.x before 10.6.2 recursively clears quarantine information upon opening a quarantined folder, which allows user…

Patch available
Fix from $1,600 2009-11-10
Mac Os X MEDIUM 6.8
CVE-2009-2824

Multiple buffer overflows in Apple Type Services (ATS) in Apple Mac OS X 10.5.8 allow remote attackers to execute arbitrary code via a crafted embedd…

Patch available
Fix from $1,600 2009-11-10
Mac Os X MEDIUM 6.8
CVE-2009-2826

Multiple integer overflows in CoreGraphics in Apple Mac OS X 10.5.8 allow remote attackers to execute arbitrary code or cause a denial of service (ap…

Patch available
Fix from $1,600 2009-11-10
Mac Os X MEDIUM 6.8
CVE-2009-2827

Heap-based buffer overflow in Disk Images in Apple Mac OS X 10.5.8 allows user-assisted remote attackers to execute arbitrary code or cause a denial …

Patch available
Fix from $1,600 2009-11-10
Mac Os X MEDIUM 6.8
CVE-2009-2830

Multiple buffer overflows in Christos Zoulas file before 5.03 in Apple Mac OS X 10.6.x before 10.6.2 allow user-assisted remote attackers to execute …

Patch available
Fix from $1,600 2009-11-10
Mac Os X MEDIUM 6.8
CVE-2009-2837

Heap-based buffer overflow in QuickDraw Manager in Apple Mac OS X before 10.6.2 allows remote attackers to execute arbitrary code or cause a denial o…

Patch available
Fix from $1,600 2009-11-10
Mac Os X MEDIUM 6.8
CVE-2009-2838

Integer overflow in QuickLook in Apple Mac OS X 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of service (application cr…

Patch available
Fix from $1,600 2009-11-10
Mac Os X MEDIUM 6.8
CVE-2009-2839

Screen Sharing in Apple Mac OS X 10.5.8 allows remote VNC servers to execute arbitrary code or cause a denial of service (memory corruption and appli…

Patch available
Fix from $1,600 2009-11-10