Vulnerabilities > Apple > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-12-08 CVE-2020-10014 Path Traversal vulnerability in Apple mac OS X and Macos
A parsing issue in the handling of directory paths was addressed with improved path validation.
local
low complexity
apple CWE-22
6.3
2020-12-08 CVE-2020-10012 Cross-site Scripting vulnerability in Apple mac OS X and Macos
An access issue was addressed with improved access restrictions.
network
low complexity
apple CWE-79
6.1
2020-12-08 CVE-2020-10009 Unspecified vulnerability in Apple mac OS X
A logic issue was addressed with improved state management.
local
low complexity
apple
5.5
2020-12-08 CVE-2020-10007 Unspecified vulnerability in Apple mac OS X
A logic issue was addressed with improved state management.
local
low complexity
apple
5.5
2020-12-08 CVE-2020-10006 Unspecified vulnerability in Apple mac OS X
This issue was addressed with improved entitlements.
local
low complexity
apple
5.5
2020-12-08 CVE-2020-10002 Unspecified vulnerability in Apple products
A logic issue was addressed with improved state management.
local
low complexity
apple
5.5
2020-12-03 CVE-2020-13524 Out-of-bounds Write vulnerability in multiple products
An out-of-bounds memory corruption vulnerability exists in the way Pixar OpenUSD 20.05 uses SPECS data from binary USD files.
network
pixar apple CWE-787
4.3
2020-11-13 CVE-2020-6147 Out-of-bounds Write vulnerability in multiple products
A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD files.
network
pixar apple CWE-787
6.8
2020-11-02 CVE-2020-9861 Out-of-bounds Write vulnerability in Apple Swift
A stack overflow issue existed in Swift for Linux.
network
low complexity
apple CWE-787
5.0
2020-10-27 CVE-2020-9982 Missing Authorization vulnerability in Apple Music 3.4.0
This issue was addressed with improved checks to prevent unauthorized actions.
network
apple CWE-862
4.3