Vulnerabilities > Apple > MAC OS X

DATE CVE VULNERABILITY TITLE RISK
2004-08-18 CVE-2004-0513 Security vulnerability in Apple Mac OS X
Unspecified vulnerability in Mac OS X before 10.3.4 has unknown impact and attack vectors related to "logging when tracing system calls."
network
low complexity
apple
critical
10.0
2004-08-06 CVE-2004-0539 Unspecified vulnerability in Apple mac OS X and mac OS X Server
The "Show in Finder" button in the Safari web browser in Mac OS X 10.3.4 and 10.2.8 may execute downloaded applications, which could allow remote attackers to execute arbitrary code.
network
low complexity
apple
critical
10.0
2004-08-06 CVE-2004-0538 Unspecified vulnerability in Apple mac OS X and mac OS X Server
LaunchServices in Mac OS X 10.3.4 and 10.2.8 automatically registers and executes new applications, which could allow attackers to execute arbitrary code without warning the user.
network
low complexity
apple
7.5
2004-07-07 CVE-2004-0486 Remote Code Execution vulnerability in Apple Mac OS X Help Protocol
HelpViewer in Mac OS X 10.3.3 and 10.2.8 processes scripts that it did not initiate, which can allow attackers to execute arbitrary code, an issue that was originally reported as a directory traversal vulnerability in the Safari web browser using the runscript parameter in a help: URI handler.
network
high complexity
apple
7.6
2004-07-07 CVE-2004-0485 Unspecified vulnerability in Apple mac OS X 10.2.8/10.3.3
The default protocol helper for the disk: URI on Mac OS X 10.3.3 and 10.2.8 allows remote attackers to write arbitrary files by causing a disk image file (.dmg) to be mounted as a disk volume.
network
low complexity
apple
5.0
2004-07-07 CVE-2004-0430 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Stack-based buffer overflow in AppleFileServer for Mac OS X 10.3.3 and earlier allows remote attackers to execute arbitrary code via a LoginExt packet for a Cleartext Password User Authentication Method (UAM) request with a PathName argument that includes an AFPName type string that is longer than the associated length field.
network
high complexity
apple
5.1
2004-05-04 CVE-2004-0383 Unspecified vulnerability in Apple mac OS X 10.2.8/10.3.3
Unknown vulnerability in Mail for Mac OS X 10.3.3 and 10.2.8, with unknown impact, related to "the handling of HTML-formatted email."
local
low complexity
apple
7.2
2004-05-04 CVE-2004-0382 Unspecified vulnerability in Apple mac OS X 10.2.8/10.3.3
Unknown vulnerability in the CUPS printing system in Mac OS X 10.3.3 and Mac OS X 10.2.8 with unknown impact, possibly related to a configuration file setting.
local
low complexity
apple
7.2
2004-05-03 CVE-2004-0428 Large Input vulnerability in Apple Mac OS X CoreFoundation
Unknown vulnerability in CoreFoundation in Mac OS X 10.3.3 and Mac OS X 10.3.3 Server, related to "the handling of an environment variable," has unknown attack vectors and unknown impact.
network
low complexity
apple
5.0
2004-03-29 CVE-2003-1011 Local Root Privilege Elevation vulnerability in MacOS X
Apple Mac OS X 10.0 through 10.2.8 allows local users with a USB keyboard to gain unauthorized access by holding down the CTRL and C keys when the system is booting, which crashes the init process and leaves the user in a root shell.
local
low complexity
apple
7.2