Vulnerabilities > Apple > Installer

DATE CVE VULNERABILITY TITLE RISK
2011-03-23 CVE-2011-0190 Improper Input Validation vulnerability in Apple Installer, mac OS X and mac OS X Server
Install Helper in Installer in Apple Mac OS X before 10.6.7 does not properly process an unspecified URL, which might allow remote attackers to track user logins by logging network traffic from an agent that was intended to send network traffic to an Apple server.
network
apple CWE-20
4.3
2007-01-31 CVE-2007-0465 Unspecified vulnerability in Apple Installer and mac OS X
Format string vulnerability in Apple Installer 2.1.5 on Mac OS X 10.4.8 allows user-assisted remote attackers to execute arbitrary code via format string specifiers in a (1) PKG, (2) DISTZ, or (3) MPKG package filename.
network
high complexity
apple
7.6