Vulnerabilities > Apple > MAC OS X > Low

DATE CVE VULNERABILITY TITLE RISK
2005-08-19 CVE-2005-2509 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Unknown vulnerability in loginwindow in Mac OS X 10.4.2 and earlier, when Fast User Switching is enabled, allows attackers to log into other accounts if they know the passwords to at least two accounts.
local
low complexity
apple
2.1
2005-08-19 CVE-2005-2512 Unspecified vulnerability in Apple mac OS X and Mail
Mail.app in Mac OS 10.4.2 and earlier, when printing or forwarding an HTML message, loads remote images even when the user's preferences state otherwise, which could result in a privacy leak.
local
low complexity
apple
2.1
2005-08-19 CVE-2005-2517 Unspecified vulnerability in Apple mac OS X and Safari
Safari in Mac OS X 10.3.9 and 10.4.2 submits forms from an XSL formatted page to the next page that is browsed by the user, which causes form data to be sent to the wrong site.
network
high complexity
apple
2.6
2005-08-19 CVE-2005-2520 Unspecified vulnerability in Apple mac OS X 10.4/10.4.1/10.4.2
The password assistant in Mac OS X 10.4 to 10.4.2, when used to create multiple accounts from the same process, does not reset the suggested password list when the assistant is displayed, which allows attackers to view recently used passwords.
local
low complexity
apple
2.1
2005-05-19 CVE-2005-1472 Unspecified vulnerability in Apple mac OS X 10.4.1
Certain system calls in Apple Mac OS X 10.4.1 do not properly enforce the permissions of certain directories without the POSIX read bit set, but with the execute bits set for group or other, which allows local users to list files in otherwise restricted directories.
local
low complexity
apple
2.1
2005-05-12 CVE-2005-0973 Unspecified vulnerability in Apple mac OS X
Unknown vulnerability in the setsockopt system call in Mac OS X 10.3.9 and earlier allows local users to cause a denial of service (memory exhaustion) via crafted arguments.
local
low complexity
apple
2.1
2005-05-03 CVE-2005-1430 Local Security vulnerability in Mac OS X
Mac OS X 10.3.x and earlier uses insecure permissions for a pseudo terminal tty (pty) that is managed by a non-setuid program, which allows local users to read or modify sessions of other users.
local
low complexity
apple
3.6
2005-05-02 CVE-2005-0342 Unspecified vulnerability in Apple mac OS X and mac OS X Server
The Finder in Mac OS X and earlier allows local users to overwrite arbitrary files and gain privileges by creating a hard link from the .DS_Store file to an arbitrary file.
local
low complexity
apple
2.1
2005-05-02 CVE-2005-0975 Local Integer Overflow vulnerability in Darwin Kernel Mach File Parsing
Integer signedness error in the parse_machfile function in the mach-o loader (mach_loader.c) for the Darwin Kernel as used in Mac OS X 10.3.7, and other versions before 10.3.9, allows local users to cause a denial of service (CPU consumption) via a crafted mach-o header.
local
low complexity
apple opendarwin
2.1
2005-03-21 CVE-2005-0715 Unspecified vulnerability in Apple mac OS X and mac OS X Server
AFP Server in Mac OS X before 10.3.8 uses insecure permissions for "Drop Boxes," which allows local users to read the contents of a Drop Box.
local
low complexity
apple
2.1