Vulnerabilities > Apple

DATE CVE VULNERABILITY TITLE RISK
2005-08-19 CVE-2005-2510 Unspecified vulnerability in Apple mac OS X Server 10.4/10.4.1/10.4.2
The Server Admin tool in servermgr_ipfilter for Mac OS X 10.4 to 10.4.2, when using multiple subnets and Address Groups, does not always properly write firewall rules to the Active Rules when certain conditions occur, which could result in firewall policies that are less restrictive than intended by the administrator.
local
low complexity
apple
4.6
2005-08-19 CVE-2005-2509 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Unknown vulnerability in loginwindow in Mac OS X 10.4.2 and earlier, when Fast User Switching is enabled, allows attackers to log into other accounts if they know the passwords to at least two accounts.
local
low complexity
apple
2.1
2005-08-19 CVE-2005-2508 Unspecified vulnerability in Apple mac OS X and mac OS X Server
dsidentity in Directory Services in Mac OS X 10.4.2 allows local users to add or remove user accounts.
local
low complexity
apple
4.6
2005-08-19 CVE-2005-2507 Unspecified vulnerability in Apple mac OS X Server 10.3.9/10.4.2
Buffer overflow in Directory Services in Mac OS X 10.3.9 and 10.4.2 allows remote attackers to execute arbitrary code during authentication.
network
low complexity
apple
7.5
2005-08-19 CVE-2005-2506 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Algorithmic complexity vulnerability in CoreFoundation in Mac OS X 10.3.9 and 10.4.2 allows attackers to cause a denial of service (CPU consumption) via crafted Gregorian dates.
network
low complexity
apple
5.0
2005-08-19 CVE-2005-2505 Unspecified vulnerability in Apple mac OS X 10.3.9
Buffer overflow in CoreFoundation in Mac OS X 10.3.9 allows attackers to execute arbitrary code via command line arguments to an application that uses CoreFoundation.
network
low complexity
apple
7.5
2005-08-19 CVE-2005-2504 Unspecified vulnerability in Apple mac OS X and mac OS X Server
The System Profiler in Mac OS X 10.4.2 labels a Bluetooth device with "Requires Authentication: No" even when the user has selected the "Require pairing for security" option, which could confuse users about which setting is valid.
local
low complexity
apple
7.2
2005-08-19 CVE-2005-2503 Unspecified vulnerability in Apple mac OS X and mac OS X Server
AppKit for Mac OS X 10.3.9 and 10.4.2 allows attackers with physical access to create local accounts by forcing a particular error to occur at the login window.
local
low complexity
apple
4.6
2005-08-19 CVE-2005-2502 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Buffer overflow in AppKit for Mac OS X 10.3.9 and 10.4.2, as used in applications such as TextEdit, allows external user-assisted attackers to execute arbitrary code via a crafted Microsoft Word file.
network
high complexity
apple
5.1
2005-08-19 CVE-2005-2501 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Buffer overflow in AppKit for Mac OS X 10.3.9 and 10.4.2 allows external user-assisted attackers to execute arbitrary code via a crafted Rich Text Format (RTF) file.
network
high complexity
apple
7.6