Vulnerabilities > Apple > MAC OS X > Medium

DATE CVE VULNERABILITY TITLE RISK
2005-08-19 CVE-2005-2522 Unspecified vulnerability in Apple mac OS X and Safari
Safari in WebKit in Mac OS X 10.4 to 10.4.2 directly accesses URLs within PDF files without the normal security checks, which allows remote attackers to execute arbitrary code via links in a PDF file.
network
high complexity
apple
5.1
2005-08-19 CVE-2005-2521 Unspecified vulnerability in Apple mac OS X 10.3.9
Buffer overflow in traceroute in Mac OS X 10.3.9 allows local users to execute arbitrary code via unknown vectors.
local
low complexity
apple
4.6
2005-08-19 CVE-2005-2515 Unspecified vulnerability in Apple mac OS X 10.4.2
Quartz Composer Screen Saver in Mac OS X 10.4.2 allows local users to access links from the RSS Visualizer even when a password is required.
local
low complexity
apple
4.6
2005-08-19 CVE-2005-2513 Unspecified vulnerability in Apple mac OS X 10.4.2
Unknown vulnerability in HItoolbox for Mac OS X 10.4.2 allows VoiceOver services to read secure input fields.
network
low complexity
apple
5.0
2005-08-19 CVE-2005-2508 Unspecified vulnerability in Apple mac OS X and mac OS X Server
dsidentity in Directory Services in Mac OS X 10.4.2 allows local users to add or remove user accounts.
local
low complexity
apple
4.6
2005-08-19 CVE-2005-2506 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Algorithmic complexity vulnerability in CoreFoundation in Mac OS X 10.3.9 and 10.4.2 allows attackers to cause a denial of service (CPU consumption) via crafted Gregorian dates.
network
low complexity
apple
5.0
2005-08-19 CVE-2005-2503 Unspecified vulnerability in Apple mac OS X and mac OS X Server
AppKit for Mac OS X 10.3.9 and 10.4.2 allows attackers with physical access to create local accounts by forcing a particular error to occur at the login window.
local
low complexity
apple
4.6
2005-08-19 CVE-2005-2502 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Buffer overflow in AppKit for Mac OS X 10.3.9 and 10.4.2, as used in applications such as TextEdit, allows external user-assisted attackers to execute arbitrary code via a crafted Microsoft Word file.
network
high complexity
apple
5.1
2005-06-13 CVE-2005-1473 Unspecified vulnerability in Apple mac OS X 10.4.1
SecurityAgent in Apple Mac OS X 10.4.1 allows attackers with physical access to bypass the locked screensaver and launch background applications by opening a URL from a text input field.
local
low complexity
apple
4.6
2005-06-08 CVE-2005-1728 Unspecified vulnerability in Apple mac OS X 10.4/10.4.1
MCX Client for Apple Mac OS X 10.4.x up to 10.4.1 insecurely logs Portable Home Directory credentials, which allows local users to obtain the credentials.
local
low complexity
apple
4.6