Vulnerabilities > Apple > MAC OS X > 10.3

DATE CVE VULNERABILITY TITLE RISK
2004-08-18 CVE-2004-0513 Security vulnerability in Apple Mac OS X
Unspecified vulnerability in Mac OS X before 10.3.4 has unknown impact and attack vectors related to "logging when tracing system calls."
network
low complexity
apple
critical
10.0
2004-07-07 CVE-2004-0486 Remote Code Execution vulnerability in Apple Mac OS X Help Protocol
HelpViewer in Mac OS X 10.3.3 and 10.2.8 processes scripts that it did not initiate, which can allow attackers to execute arbitrary code, an issue that was originally reported as a directory traversal vulnerability in the Safari web browser using the runscript parameter in a help: URI handler.
network
high complexity
apple
7.6
2004-07-07 CVE-2004-0430 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Stack-based buffer overflow in AppleFileServer for Mac OS X 10.3.3 and earlier allows remote attackers to execute arbitrary code via a LoginExt packet for a Cleartext Password User Authentication Method (UAM) request with a PathName argument that includes an AFPName type string that is longer than the associated length field.
network
high complexity
apple
5.1
2004-05-03 CVE-2004-0428 Large Input vulnerability in Apple Mac OS X CoreFoundation
Unknown vulnerability in CoreFoundation in Mac OS X 10.3.3 and Mac OS X 10.3.3 Server, related to "the handling of an environment variable," has unknown attack vectors and unknown impact.
network
low complexity
apple
5.0
2004-03-29 CVE-2003-1006 Local Buffer Overflow vulnerability in MacOSX CD9660.Util Probe For Mounting Argument
Buffer overflow in cd9660.util in Apple Mac OS X 10.0 through 10.3.2 and Apple Mac OS X Server 10.0 through 10.3.2 may allow local users to execute arbitrary code via a long command line parameter.
local
low complexity
apple
7.2
2004-03-15 CVE-2004-0165 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Format string vulnerability in Point-to-Point Protocol (PPP) daemon (pppd) 2.4.0 for Mac OS X 10.3.2 and earlier allows remote attackers to read arbitrary pppd process data, including PAP or CHAP authentication credentials, to gain privileges.
network
low complexity
apple
5.0
2003-12-01 CVE-2003-0913 Unauthorized Access vulnerability in Apple MacOS X Terminal
Unknown vulnerability in the Terminal application for Mac OS X 10.3 (Client and Server) may allow "unauthorized access."
local
low complexity
apple
4.6
2003-11-03 CVE-2003-0883 Local Security vulnerability in Apple mac OS X 10.3
The System Preferences capability in Mac OS X before 10.3 allows local users to access secure Preference Panes for a short period after an administrator has authenticated to the system.
local
low complexity
apple
4.6
2003-11-03 CVE-2003-0882 Remote Security vulnerability in Mac OS X
Mac OS X before 10.3 initializes the TCP timestamp with a constant number, which allows remote attackers to determine the system's uptime via the ID field in a TCP packet.
network
low complexity
apple
5.0
2003-11-03 CVE-2003-0881 Remote Security vulnerability in Mac OS X
Mail in Mac OS X before 10.3, when configured to use MD5 Challenge Response, uses plaintext authentication if the CRAM-MD5 hashed login fails, which could allow remote attackers to gain privileges by sniffing the password.
network
low complexity
apple
7.5