Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2009-06-10 CVE-2009-1712 Code Injection vulnerability in Apple Safari
WebKit in Apple Safari before 4.0 does not prevent remote loading of local Java applets, which allows remote attackers to execute arbitrary code, gain privileges, or obtain sensitive information via an APPLET or OBJECT element.
network
apple CWE-94
critical
9.3
2009-06-10 CVE-2009-1711 Resource Management Errors vulnerability in Apple Safari
WebKit in Apple Safari before 4.0 does not properly initialize memory for Attr DOM objects, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted HTML document.
network
apple CWE-399
critical
9.3
2009-06-10 CVE-2009-1709 Resource Management Errors vulnerability in Apple Safari
Use-after-free vulnerability in the garbage-collection implementation in WebCore in WebKit in Apple Safari before 4.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap corruption and application crash) via an SVG animation element, related to SVG set objects, SVG marker elements, the targetElement attribute, and unspecified "caches."
network
apple CWE-399
critical
9.3
2009-06-10 CVE-2009-1708 Multiple Security vulnerability in RETIRED: Apple Safari Prior to 4.0
Apple Safari before 4.0 does not prevent calls to the open-help-anchor URL handler by web sites, which allows remote attackers to open arbitrary local help files, and execute arbitrary code or obtain sensitive information, via a crafted call.
network
apple
critical
9.3
2009-06-10 CVE-2009-1705 Numeric Errors vulnerability in Apple Safari
CoreGraphics in Apple Safari before 4.0 on Windows does not properly use arithmetic during automatic hinting of TrueType fonts, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted font data.
network
apple CWE-189
critical
9.3
2009-06-10 CVE-2009-1704 Code Injection vulnerability in Apple Safari
CFNetwork in Apple Safari before 4.0 misinterprets downloaded image files as local HTML documents in unspecified circumstances, which allows remote attackers to execute arbitrary JavaScript code by placing it in an image file.
network
apple CWE-94
critical
9.3
2009-06-10 CVE-2009-1701 Resource Management Errors vulnerability in Apple Safari
Use-after-free vulnerability in the JavaScript DOM implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) by destroying a document.body element that has an unspecified XML container with elements that support the dir attribute.
network
apple CWE-399
critical
9.3
2009-06-10 CVE-2009-1698 Code Injection vulnerability in Apple Safari
WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not initialize a pointer during handling of a Cascading Style Sheets (CSS) attr function call with a large numerical argument, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted HTML document.
network
apple CWE-94
critical
9.3
2009-06-10 CVE-2009-1533 Buffer Errors vulnerability in Microsoft Office, Office XP and Works
Buffer overflow in the Works for Windows document converters in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP3, Office 2007 SP1, and Works 8.5 and 9 allows remote attackers to execute arbitrary code via a crafted Works .wps file that triggers memory corruption, aka "File Converter Buffer Overflow Vulnerability."
network
microsoft CWE-119
critical
9.3
2009-06-10 CVE-2009-1138 Resource Management Errors vulnerability in Microsoft Windows 2000
The LDAP service in Active Directory on Microsoft Windows 2000 SP4 does not properly free memory for LDAP and LDAPS requests, which allows remote attackers to execute arbitrary code via a request that uses hexadecimal encoding, whose associated memory is not released, related to a "DN AttributeValue," aka "Active Directory Invalid Free Vulnerability." NOTE: this issue is probably a memory leak.
network
low complexity
microsoft CWE-399
critical
10.0