Vulnerabilities > Apple > Low

DATE CVE VULNERABILITY TITLE RISK
2004-03-03 CVE-2004-0088 Unspecified vulnerability in Apple mac OS X 10.2.8
The System Configuration subsystem in Mac OS 10.2.8 allows local users to modify network settings, a different vulnerability than CVE-2004-0087.
local
low complexity
apple
2.1
2003-11-17 CVE-2001-1412 Unspecified vulnerability in Apple mac OS X 10.4.9
nidump on MacOS X before 10.3 allows local users to read the encrypted passwords from the password file by specifying passwd as a command line argument.
local
low complexity
apple
2.1
2003-11-03 CVE-2003-0876 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Finder in Mac OS X 10.2.8 and earlier sets global read/write/execute permissions on directories when they are dragged (copied) from a mounted volume such as a disk image (DMG), which could cause the directories to have less restrictive permissions than intended.
local
low complexity
apple
2.1
2003-11-03 CVE-2003-0878 Local Security vulnerability in Mac OS X
slpd daemon in Mac OS X before 10.3 allows local users to overwrite arbitrary files via a symlink attack on a temporary file, a different vulnerability than CVE-2003-0875.
local
low complexity
apple
2.1
2002-12-11 CVE-2002-1270 Local Security vulnerability in Apple mac OS X 10.2.2
Mac OS X 10.2.2 allows local users to read files that only allow write access via the map_fd() Mach system call.
local
low complexity
apple
2.1
2001-12-31 CVE-2001-1565 Authentication Credentials Disclosure vulnerability in Apple Mac OS X PPP
Point to Point Protocol daemon (pppd) in MacOS x 10.0 and 10.1 through 10.1.5 provides the username and password on the command line, which allows local users to obtain authentication information via the ps command.
local
low complexity
apple
2.1
2001-12-06 CVE-2001-0806 Unspecified vulnerability in Apple mac OS X
Apple MacOS X 10.0 and 10.1 allow a local user to read and write to a user's desktop folder via insecure default permissions for the Desktop when it is created in some languages.
local
low complexity
apple
3.6
2001-02-12 CVE-2001-0068 Unspecified vulnerability in Apple mac OS Runtime for Java 2.2.3
Mac OS Runtime for Java (MRJ) 2.2.3 allows remote attackers to use malicious applets to read files outside of the CODEBASE context via the ARCHIVE applet parameter.
network
high complexity
apple
2.6
1999-12-31 CVE-1999-1102 lpr on SunOS 4.1.1, BSD 4.3, A/UX 2.0.1, and other BSD-based operating systems allows local users to create or overwrite arbitrary files via a symlink attack that is triggered after invoking lpr 1000 times.
local
low complexity
sgi apple bsd sun
2.1