Skip to main content

Vendor archive

apple CVEs

Beta · best-effort

14,933 CVEs tagged to vendor apple2,402 Critical, 6,150 High, 5,650 Medium, 731 Low, 0 Unrated.

CVE-2002-0862

Published Oct 4, 2002

The (1) CertGetCertificateChain, (2) CertVerifyCertificateChainPolicy, and (3) WinVerifyTrust APIs within the CryptoAPI for Microsoft products including Microsoft Windows 98 throu…

CVSS 6.8 · Medium
Buzz score
4.0
OTX pulse activity

CVE-2002-0376

Published Sep 24, 2002

Buffer overflow in Apple QuickTime 5.0 ActiveX component allows remote attackers to execute arbitrary code via a long pluginspage field.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2002-0676

Published Jul 11, 2002

SoftwareUpdate for MacOS 10.1.x does not use authentication when downloading a software update, which could allow remote attackers to execute arbitrary code by posing as the Apple…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2002-0252

Published May 29, 2002

Buffer overflow in Apple QuickTime Player 5.01 and 5.02 allows remote web servers to execute arbitrary code via a response containing a long Content-Type MIME header.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-1531

Published Dec 31, 2001

Buffer overflow in Claris Emailer 2.0v2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an email attachment with a long filename.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-1565

Published Dec 31, 2001

Point to Point Protocol daemon (pppd) in MacOS x 10.0 and 10.1 through 10.1.5 provides the username and password on the command line, which allows local users to obtain authentica…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2001-1575

Published Dec 31, 2001

Apple Personal Web Sharing (PWS) 1.1, 1.5, and 1.5.5, when Web Sharing authentication is enabled, allows remote attackers to cause a denial of service via a long password, possibl…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-0720

Published Dec 6, 2001

Internet Explorer 5.1 for Macintosh on Mac OS X allows remote attackers to execute arbitrary commands by causing a BinHex or MacBinary file type to be downloaded, which causes the…

CVSS 7.5 · High
Buzz score
4.0
OTX pulse activity
Vendor/product tagsBeta · best-effort

CVE-2001-0806

Published Dec 6, 2001

Apple MacOS X 10.0 and 10.1 allow a local user to read and write to a user's desktop folder via insecure default permissions for the Desktop when it is created in some languages.

CVSS 3.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2001-0766

Published Oct 18, 2001

Apache on MacOS X Client 10.0.3 with the HFS+ file system allows remote attackers to bypass access restrictions via a URL that contains some characters whose case is not matched b…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-1447

Published Oct 17, 2001

NetInfo Manager for Mac OS X 10.0 through 10.1 allows local users to gain root privileges by opening applications using the (1) "recent items" and (2) "services" menus, which caus…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0649

Published Sep 20, 2001

Personal Web Sharing 1.5.5 allows a remote attacker to cause a denial of service via a long HTTP request.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1446

Published Sep 11, 2001

Find-By-Content in Mac OS X 10.0 through 10.0.4 creates world-readable index files named .FBCIndex in every directory, which allows remote attackers to learn the contents of files…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0198

Published May 3, 2001

Buffer overflow in QuickTime Player plugin 4.1.2 (Japanese) allows remote attackers to execute arbitrary commands via a long HREF parameter in an EMBED tag.

CVSS 7.6 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0068

Published Feb 12, 2001

Mac OS Runtime for Java (MRJ) 2.2.3 allows remote attackers to use malicious applets to read files outside of the CODEBASE context via the ARCHIVE applet parameter.

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2001-0102

Published Feb 12, 2001

"Multiple Users" Control Panel in Mac OS 9 allows Normal users to gain Owner privileges by removing the Users & Groups Data File, which effectively removes the Owner password and…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2000-0563

Published Oct 20, 2000

The URLConnection function in MacOS Runtime Java (MRJ) 2.1 and earlier and the Microsoft virtual machine (VM) for MacOS allows a malicious web site operator to connect to arbitrar…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0346

Published May 2, 2000

AppleShare IP 6.1 and later allows a remote attacker to read potentially sensitive information via an invalid range request to the web server.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 14,901-14,925 of 14,933 CVEsPage 597 of 598