Vulnerabilities > Apple > Medium

DATE CVE VULNERABILITY TITLE RISK
2002-08-12 CVE-2002-0659 Denial Of Service vulnerability in OpenSSL ASN.1 Parsing Error
The ASN1 library in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allows remote attackers to cause a denial of service via invalid encodings.
network
low complexity
openssl oracle apple
5.0
2001-12-31 CVE-2001-1575 Authentication DoS vulnerability in Apple Personal web Sharing 1.1/1.5/1.5.5
Apple Personal Web Sharing (PWS) 1.1, 1.5, and 1.5.5, when Web Sharing authentication is enabled, allows remote attackers to cause a denial of service via a long password, possibly due to a buffer overflow.
network
low complexity
apple
5.0
2001-09-20 CVE-2001-0649 Denial-Of-Service vulnerability in Apple Personal web Sharing 1.5.5
Personal Web Sharing 1.5.5 allows a remote attacker to cause a denial of service via a long HTTP request.
network
low complexity
apple
5.0
2000-04-04 CVE-2000-0299 Unspecified vulnerability in Apple Webobjects 4.5
Buffer overflow in WebObjects.exe in the WebObjects Developer 4.5 package allows remote attackers to cause a denial of service via an HTTP request with long headers such as Accept.
network
low complexity
apple
5.0
1999-12-28 CVE-2000-0041 Unspecified vulnerability in Apple Macos 9.0
Macintosh systems generate large ICMP datagrams in response to malformed datagrams, allowing them to be used as amplifiers in a flood attack.
network
low complexity
apple
5.0
1999-11-01 CVE-1999-1077 Unspecified vulnerability in Apple Macos 9
Idle locking function in MacOS 9 allows local attackers to bypass the password protection of idled sessions via the programmer's switch or CMD-PWR keyboard sequence, which brings up a debugger that the attacker can use to disable the lock.
local
low complexity
apple
4.6
1999-10-26 CVE-1999-1076 Unspecified vulnerability in Apple Macos 9
Idle locking function in MacOS 9 allows local users to bypass the password protection of idled sessions by selecting the "Log Out" option and selecting a "Cancel" option in the dialog box for an application that attempts to verify that the user wants to log out, which returns the attacker into the locked session.
local
low complexity
apple
4.6
1999-07-10 CVE-1999-1543 Unspecified vulnerability in Apple Macos
MacOS uses weak encryption for passwords that are stored in the Users & Groups Data File.
local
low complexity
apple
4.6
1999-06-03 CVE-1999-1412 A possible interaction between Apple MacOS X release 1.0 and Apache HTTP server allows remote attackers to cause a denial of service (crash) via a flood of HTTP GET requests to CGI programs, which generates a large number of processes.
network
low complexity
apache apple
5.0
1999-05-21 CVE-1999-1393 Unspecified vulnerability in Apple Macos 8.5/8.6
Control Panel "Password Security" option for Apple Powerbooks allows attackers with physical access to the machine to bypass the security by booting it with an emergency startup disk and using a disk editor to modify the on/off toggle or password in the aaaaaaaAPWD file, which is normally inaccessible.
local
low complexity
apple
4.6