CVE-2007-4695
- EPSS 0.45%
- Veröffentlicht 15.11.2007 01:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified "input validation" vulnerability in WebCore in Apple Mac OS X 10.4 through 10.4.10 allows remote attackers to modify form field values via unknown vectors related to file uploads.
CVE-2007-4696
- EPSS 0.27%
- Veröffentlicht 15.11.2007 01:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Race condition in WebCore in Apple Mac OS X 10.4 through 10.4.10 allows remote attackers to obtain information for forms from other sites via unknown vectors related to "page transitions" in Safari.
CVE-2007-4697
- EPSS 2.38%
- Veröffentlicht 15.11.2007 01:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in WebCore in Apple Mac OS X 10.4 through 10.4.10 allows remote attackers to cause a denial of service (application termination) or execute arbitrary code via unknown vectors related to browser history, which triggers memory...
CVE-2007-1661
- EPSS 2.72%
- Veröffentlicht 07.11.2007 23:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Perl-Compatible Regular Expression (PCRE) library before 7.3 backtracks too far when matching certain input bytes against some regex patterns in non-UTF-8 mode, which allows context-dependent attackers to obtain sensitive information or cause a denia...
CVE-2007-3751
- EPSS 20.03%
- Veröffentlicht 07.11.2007 23:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in QuickTime for Java in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via untrusted Java applets that gain privileges via unspecified vectors.
CVE-2007-4675
- EPSS 48.57%
- Veröffentlicht 07.11.2007 23:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Heap-based buffer overflow in the QuickTime VR extension 7.2.0.240 in QuickTime.qts in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via a QTVR (QuickTime Virtual Reality) movie file containing a large size field in the...
CVE-2007-4676
- EPSS 69.58%
- Veröffentlicht 07.11.2007 23:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via malformed elements when parsing (1) Poly type (0x0070 through 0x0074) and (2) PackBitsRgn field (0x0099) opcodes in a PICT image.
CVE-2007-4677
- EPSS 69.88%
- Veröffentlicht 07.11.2007 23:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via an invalid color table size when parsing the color table atom (CTAB) in a movie file, related to the CTAB RGB values.
- EPSS 0.52%
- Veröffentlicht 03.08.2007 10:17:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
CRLF injection vulnerability in CFNetwork on Apple Mac OS X 10.3.9 and 10.4.10 before 20070731 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in an unspecified context. NOTE: t...
CVE-2007-3744
- EPSS 5.94%
- Veröffentlicht 03.08.2007 10:17:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Heap-based buffer overflow in the UPnP IGD (Internet Gateway Device Standardized Device Control Protocol) implementation in mDNSResponder on Apple Mac OS X 10.4.10 before 20070731 allows network-adjacent remote attackers to execute arbitrary code via...