Vulnerabilities > Apple > Medium

DATE CVE VULNERABILITY TITLE RISK
2004-03-29 CVE-2003-1007 Unspecified vulnerability in Apple MacOS X AppleFileServer
AppleFileServer (AFS) in Apple Mac OS X 10.2.8 and 10.3.2 does not properly handle certain malformed requests, with unknown impact.
network
low complexity
apple
5.0
2004-03-15 CVE-2004-0169 Remote Denial of Service vulnerability in Apple Darwin Streaming Server 4.1.3
QuickTime Streaming Server in MacOS X 10.2.8 and 10.3.2 allows remote attackers to cause a denial of service (crash) via DESCRIBE requests with long User-Agent fields, which causes an Assert error to be triggered in the BufferIsFull function.
network
low complexity
apple
5.0
2004-03-15 CVE-2004-0166 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Unknown vulnerability in Safari web browser for Mac OS X 10.2.8 related to "the display of URLs in the status bar."
network
low complexity
apple
5.0
2004-03-15 CVE-2004-0165 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Format string vulnerability in Point-to-Point Protocol (PPP) daemon (pppd) 2.4.0 for Mac OS X 10.3.2 and earlier allows remote attackers to read arbitrary pppd process data, including PAP or CHAP authentication credentials, to gain privileges.
network
low complexity
apple
5.0
2004-03-03 CVE-2004-0089 Local Buffer Overflow vulnerability in Apple mac OS X 10.2.8/10.3.9
Buffer overflow in TruBlueEnvironment in Mac OS X 10.3.x and 10.2.x allows local users to gain privileges via a long environment variable.
local
low complexity
apple
4.6
2004-03-03 CVE-2004-0086 Unspecified vulnerability in Apple mac OS X 10.3.2
Unknown vulnerability in the Mail application for Mac OS X 10.3.2 has unknown impact and attack vectors, a different vulnerability than CVE-2004-0085.
network
low complexity
apple
5.0
2004-03-03 CVE-2004-0085 Unspecified vulnerability in Apple mac OS X 10.1.5/10.2.8
Unknown vulnerability in the Mail application for Mac OS X 10.1.5 and 10.2.8 with unknown impact, a different vulnerability than CVE-2004-0086.
network
low complexity
apple
5.0
2003-12-31 CVE-2003-1414 Path Traversal vulnerability in Apple products
Directory traversal vulnerability in parse_xml.cg Apple Darwin Streaming Server 4.1.2 and Apple Quicktime Streaming Server 4.1.1 allows remote attackers to read arbitrary files via a ...
network
apple CWE-22
4.3
2003-12-31 CVE-2003-1413 Path Traversal vulnerability in Apple products
parse_xml.cgi in Apple Darwin Streaming Server 4.1.1 allows remote attackers to determine the existence of arbitrary files by using ".." sequences in the filename parameter and comparing the resulting error messages.
network
apple CWE-22
4.3
2003-12-31 CVE-2003-1005 Remote Denial Of Service vulnerability in Apple MacOS X ASN.1 Decoding
The PKI functionality in Mac OS X 10.2.8 and 10.3.2 allows remote attackers to cause a denial of service (service crash) via malformed ASN.1 sequences.
network
low complexity
apple
5.0