Vulnerabilities > Apple > MAC OS X Server
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2003-11-03 | CVE-2003-0876 | Unspecified vulnerability in Apple mac OS X and mac OS X Server Finder in Mac OS X 10.2.8 and earlier sets global read/write/execute permissions on directories when they are dragged (copied) from a mounted volume such as a disk image (DMG), which could cause the directories to have less restrictive permissions than intended. | 2.1 |
2003-11-03 | CVE-2003-0871 | Apple Quicktime Java vulnerability in Apple Mac OS X 10.3 Unknown vulnerability in QuickTime Java in Mac OS X v10.3 and Mac OS X Server 10.3 allows attackers to gain "unauthorized access to a system." | 7.5 |
2003-10-06 | CVE-2003-0694 | The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c. | 10.0 |
2003-10-06 | CVE-2003-0681 | Buffer Overflow vulnerability in Sendmail Ruleset Parsing A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient (2), final, or (3) mailer-specific envelope recipients, has unknown consequences. | 7.5 |
2003-08-27 | CVE-2003-0466 | Off-by-one Error vulnerability in multiple products Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code, as demonstrated in wu-ftpd 2.5.0 through 2.6.2 via commands that cause pathnames of length MAXPATHLEN+1 to trigger a buffer overflow, including (1) STOR, (2) RETR, (3) APPE, (4) DELE, (5) MKD, (6) RMD, (7) STOU, or (8) RNTO. | 9.8 |
2003-08-18 | CVE-2003-0518 | Unspecified vulnerability in Apple mac OS X and mac OS X Server The screen saver in MacOS X allows users with physical access to cause the screen saver to crash and gain access to the underlying session via a large number of characters in the password field, possibly triggering a buffer overflow. | 4.6 |
2003-06-13 | CVE-2003-0420 | Unspecified vulnerability in Apple mac OS X Server 10.2.6 Information leak in dsimportexport for Apple Macintosh OS X Server 10.2.6 allows local users to obtain the username and password of the account running the tool. | 4.6 |
2003-05-05 | CVE-2003-0198 | Unspecified vulnerability in Apple mac OS X and mac OS X Server Mac OS X before 10.2.5 allows guest users to modify the permissions of the DropBox folder and read unauthorized files. | 6.4 |
2003-05-05 | CVE-2003-0171 | Unspecified vulnerability in Apple mac OS X and mac OS X Server DirectoryServices in MacOS X trusts the PATH environment variable to locate and execute the touch command, which allows local users to execute arbitrary commands by modifying the PATH to point to a directory containing a malicious touch program. | 7.2 |
2003-03-03 | CVE-2003-0049 | Unspecified vulnerability in Apple mac OS X and mac OS X Server Apple File Protocol (AFP) in Mac OS X before 10.2.4 allows administrators to log in as other users by using the administrator password. | 7.5 |