Vulnerabilities > Apple > Low

DATE CVE VULNERABILITY TITLE RISK
2007-12-19 CVE-2007-5851 Permissions, Privileges, and Access Controls vulnerability in Apple mac OS X 10.4.11
iChat in Apple Mac OS X 10.4.11 allows network-adjacent remote attackers to automatically initiate a video connection to another user via unknown vectors.
local
low complexity
apple CWE-264
3.6
2007-11-15 CVE-2007-4701 Permissions, Privileges, and Access Controls vulnerability in Apple mac OS X and mac OS X Server
WebKit on Apple Mac OS X 10.4 through 10.4.10 does not create temporary files securely when Safari is previewing a PDF file, which allows local users to read the contents of that file.
local
low complexity
apple CWE-264
2.1
2007-11-15 CVE-2007-4679 Permissions, Privileges, and Access Controls vulnerability in Apple mac OS X
CFFTP in CFNetwork for Apple Mac OS X 10.4 through 10.4.10 allows remote FTP servers to force clients to connect to other hosts via crafted responses to FTP PASV commands.
network
high complexity
apple CWE-264
2.6
2007-05-24 CVE-2007-0751 Multiple Security vulnerability in Apple Mac OS X 2007-005
A cleanup script in crontabs in Apple Mac OS X 10.3.9 and 10.4.9 might delete filesystems that have been mounted in /tmp, which might allow local users to cause a denial of service, related to the find command.
local
low complexity
apple
2.1
2007-05-09 CVE-2007-2580 Local vulnerability in Apple Safari
Unspecified vulnerability in Apple Safari allows local users to obtain sensitive information (saved keychain passwords) via the document.loginform.password.value JavaScript parameter loaded from an AppleScript script.
local
apple
1.9
2007-02-20 CVE-2007-1008 Remote Denial of Service vulnerability in Apple Itunes 7.0.2
Apple iTunes 7.0.2 allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted XML list of radio stations, which results in memory corruption.
network
high complexity
apple
2.6
2007-02-16 CVE-2007-0710 Resource Management Errors vulnerability in Apple Ichat
The Bonjour functionality in iChat in Apple Mac OS X 10.3.9 allows remote attackers to cause a denial of service (persistent application crash) via unspecified vectors, possibly related to CVE-2007-0614.
local
low complexity
apple CWE-399
2.1
2006-12-20 CVE-2006-5681 Information Disclosure vulnerability in Apple Mac OS X Quicktime For Java
QuickTime for Java on Mac OS X 10.4 through 10.4.8, when used with Quartz Composer, allows remote attackers to obtain sensitive information (screen images) via a Java applet that accesses images that are being rendered by other embedded QuickTime objects.
network
high complexity
apple
2.6
2006-11-27 CVE-2006-6126 Privilege Escalation vulnerability in Apple Mac OS X Mach-O Binary Loading
Apple Mac OS X allows local users to cause a denial of service (memory corruption) via a crafted Mach-O binary with a malformed load_command data structure.
local
low complexity
apple
2.1
2006-11-27 CVE-2006-6127 Local Denial of Service vulnerability in Apple Mac OS X KQueue
Apple Mac OS X kernel allows local users to cause a denial of service via a process that uses kevent to register a queue and an event, then fork a child process that uses kevent to register an event for the same queue as the parent.
local
low complexity
apple
2.1