Vulnerabilities > Apple > MAC OS X Server > Low

DATE CVE VULNERABILITY TITLE RISK
2006-04-21 CVE-2006-1981 Local Security vulnerability in Mac OS X
Unspecified vulnerability in Java InputMethods on Mac OS X 10.4.5 may cause InputMethods to send input events for secure fields to the wrong text field, which might reveal the password to others who can view the screen.
local
low complexity
apple
2.1
2006-03-03 CVE-2006-0386 Multiple vulnerability in Apple Mac OS X Security Update 2006-001
FileVault in Mac OS X 10.4.5 and earlier does not properly mount user directories when creating a FileVault image, which allows local users to access protected files when FileVault is enabled.
local
low complexity
apple
1.7
2006-03-03 CVE-2006-0388 Code Injection vulnerability in Apple mac OS X and mac OS X Server
Safari in Mac OS X 10.3 before 10.3.9 and 10.4 before 10.4.5 allows remote attackers to redirect users to local files and execute arbitrary JavaScript via unspecified vectors involving HTTP redirection to local resources.
local
high complexity
apple CWE-94
2.6
2006-03-03 CVE-2006-0389 Multiple vulnerability in Apple Mac OS X Security Update 2006-001
Cross-site scripting (XSS) vulnerability in Syndication (Safari RSS) in Mac OS X 10.4 through 10.4.5 allows remote attackers to execute arbitrary JavaScript via unspecified vectors involving RSS feeds.
network
high complexity
apple
2.6
2005-12-31 CVE-2005-3782 Denial-Of-Service vulnerability in Apple Mac OS X Server
Mac OS X 10.4.3 up to 10.4.6, when loginwindow uses the "Name and password" setting, and the "Show the Restart, Sleep, and Shut Down buttons" option is disabled, allows users with physical access to bypass login and reboot the system by entering ">restart", ">power", or ">shutdown" sequences after the username.
local
low complexity
apple
2.1
2005-11-01 CVE-2005-2739 Local vulnerability in Apple Mac OS X Security Update 2005-10-31
Keychain Access in Mac OS X 10.4.2 and earlier keeps a password visible even if a keychain times out while the password is being viewed, which could allow attackers with physical access to obtain the password.
local
low complexity
apple
2.1
2005-11-01 CVE-2005-2749 Local vulnerability in Apple Mac OS X Security Update 2005-10-31
Unspecified vulnerability in the Finder Get Info window for Mac OS X 10.4 up to 10.4.2 causes Finder to misrepresent file and group ownership information.
local
low complexity
apple
2.1
2005-11-01 CVE-2005-2750 Local vulnerability in Apple mac OS X Server 10.4.2
Software Update in Mac OS X 10.4.2, when the user marks all updates to be ignored, exits without asking the user to reset the status of the updates, which could prevent important, security-relevant updates from being installed.
local
low complexity
apple
2.1
2005-11-01 CVE-2005-2751 Local vulnerability in Apple Mac OS X Security Update 2005-10-31
memberd in Mac OS X 10.4 up to 10.4.2, in certain situations, does not quickly synchronize access control checks with changes in group membership, which could allow users to access files and other resources after they have been removed from a group.
local
low complexity
apple
2.1
2005-11-01 CVE-2005-2752 Information Exposure vulnerability in Apple mac OS X and mac OS X Server
An unspecified kernel interface in Mac OS X 10.4.2 and earlier does not properly clear memory before reusing it, which could allow attackers to obtain sensitive information, a different vulnerability than CVE-2005-1126 and CVE-2005-1406.
local
low complexity
apple CWE-200
2.1