Skip to main content

Vendor/product archive

apple / mac_os_x_server CVEs

Beta · best-effort

817 CVEs tagged to apple / mac_os_x_server163 Critical, 161 High, 430 Medium, 63 Low, 0 Unrated.

CVE-2007-0750

Published May 24, 2007

Integer overflow in CoreGraphics in Apple Mac OS X 10.4 up to 10.4.9 allows remote user-assisted attackers to cause a denial of service (application termination) or execute arbitr…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-0751

Published May 24, 2007

A cleanup script in crontabs in Apple Mac OS X 10.3.9 and 10.4.9 might delete filesystems that have been mounted in /tmp, which might allow local users to cause a denial of servic…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2007-0752

Published May 24, 2007

The PPP daemon (pppd) in Apple Mac OS X 10.4.8 checks ownership of the stdin file descriptor to determine if the invoker has sufficient privileges, which allows local users to loa…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2007-0745

Published May 2, 2007

The Apple Security Update 2007-004 uses an incorrect configuration file for FTPServer in Apple Mac OS X Server 10.4.9, which might allow remote authenticated users to access addit…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2007-0735

Published Apr 24, 2007

Use-after-free vulnerability in Libinfo in Apple Mac OS X 10.3.9 through 10.4.9 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitr…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-0736

Published Apr 24, 2007

Integer overflow in the RPC library in Libinfo in Apple Mac OS X 10.3.9 through 10.4.9 allows remote attackers to execute arbitrary code via crafted requests to portmap.

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-0744

Published Apr 24, 2007

SMB in Apple Mac OS X 10.3.9 through 10.4.9 does not properly clean the environment when executing commands, which allows local users to gain privileges by setting unspecified env…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2007-0746

Published Apr 24, 2007

Heap-based buffer overflow in the VideoConference framework in Apple Mac OS X 10.3.9 through 10.4.9 allows remote attackers to execute arbitrary code via a "crafted SIP packet whe…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-0747

Published Apr 24, 2007

load_webdav in Apple Mac OS X 10.3.9 through 10.4.9 does not properly clean the environment when mounting a WebDAV filesystem, which allows local users to gain privileges by setti…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2007-0725

Published Apr 24, 2007

Buffer overflow in the AirPortDriver module for AirPort in Apple Mac OS X 10.3.9 through 10.4.9, when running on hardware with the original AirPort wireless card, allows local use…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2007-0732

Published Apr 24, 2007

Unspecified vulnerability in the CoreServices daemon in CarbonCore in Apple Mac OS X 10.4 through 10.4.9 allows local users to gain privileges via unspecified vectors involving "o…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2007-0721

Published Mar 13, 2007

Unspecified vulnerability in diskimages-helper in Apple Mac OS X 10.3.9 and 10.4 through 10.4.8 allows remote user-assisted attackers to execute arbitrary code via a crafted compr…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-0722

Published Mar 13, 2007

Integer overflow in Apple Mac OS X 10.3.9 and 10.4 through 10.4.8 allows remote user-assisted attackers to execute arbitrary code via a crafted AppleSingleEncoding disk image.

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-0723

Published Mar 13, 2007

Unspecified vulnerability in the authentication feature for DirectoryService (DS Plug-Ins) for Apple Mac OS X 10.3.9 and 10.4 through 10.4.8 allows remote authenticated LDAP users…

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-0724

Published Mar 13, 2007

The IOKit HID interface in Apple Mac OS X 10.3.9 and 10.4 through 10.4.8 does not sufficiently limit access to certain controls, which allows local users to gain privileges by usi…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-0726

Published Mar 13, 2007

The SSH key generation process in OpenSSH in Apple Mac OS X 10.3.9 and 10.4 through 10.4.8 allows remote attackers to cause a denial of service by connecting to the server before…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-0728

Published Mar 13, 2007

Unspecified vulnerability in Apple Mac OS X 10.3.9 and 10.4 through 10.4.8 creates files insecurely while initializing a USB printer, which allows local users to create or overwri…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-0731

Published Mar 13, 2007

Stack-based buffer overflow in the Apple-specific Samba module (SMB File Server) in Apple Mac OS X 10.4 through 10.4.8 allows context-dependent attackers to execute arbitrary code…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-0719

Published Mar 13, 2007

Stack-based buffer overflow in Apple Mac OS X 10.3.9 and 10.4 through 10.4.8 allows remote user-assisted attackers to execute arbitrary code via an image with a crafted ColorSync…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-1071

Published Feb 22, 2007

Integer overflow in the gifGetBandProc function in ImageIO in Apple Mac OS X 10.4.8 allows remote attackers to cause a denial of service (segmentation fault) and possibly execute…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 601-625 of 817 CVEsPage 25 of 33