CVE-2006-3504
- EPSS 0.42%
- Published 03.08.2006 01:04:00
- Last modified 03.04.2025 01:03:51
The Download Validation in LaunchServices for Apple Mac OS X 10.4.7 can identify certain HTML as "safe", which could allow attackers to execute Javascript code in local context when the "Open 'safe' files after downloading" option is enabled in Safar...
CVE-2006-3505
- EPSS 2.44%
- Published 03.08.2006 01:04:00
- Last modified 03.04.2025 01:03:51
WebKit in Apple Mac OS X 10.3.9 and 10.4.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML document that causes WebKit to access an object that has already been deallocated.
- EPSS 0.39%
- Published 02.08.2006 16:04:00
- Last modified 03.04.2025 01:03:51
Unspecified vulnerability in AFP Server in Apple Mac OS X 10.3.9 allows remote attackers to determine names of unauthorized files and folders via unknown vectors related to the search results.
- EPSS 7.92%
- Published 02.08.2006 16:04:00
- Last modified 03.04.2025 01:03:51
Integer overflow in AFP Server for Apple Mac OS X 10.3.9 and 10.4.7 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via unknown vectors.
CVE-2006-3495
- EPSS 0.07%
- Published 02.08.2006 16:04:00
- Last modified 03.04.2025 01:03:51
AFP Server in Apple Mac OS X 10.3.9 and 10.4.7 stores reconnect keys in a world-readable file, which allows local users to obtain the keys and access files and folders of other users.
- EPSS 1.86%
- Published 02.08.2006 16:04:00
- Last modified 03.04.2025 01:03:51
AFP Server in Apple Mac OS X 10.3.9 and 10.4.7 allows remote attackers to cause denial of service (crash) via an invalid AFP request that triggers an unchecked error condition.
CVE-2006-3497
- EPSS 1.4%
- Published 02.08.2006 16:04:00
- Last modified 03.04.2025 01:03:51
Unspecified vulnerability in the "compression state handling" in Bom for Apple Mac OS X 10.3.9 and 10.4.7 allows user-assisted attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted Zip archive.
- EPSS 9.18%
- Published 02.08.2006 16:04:00
- Last modified 03.04.2025 01:03:51
Stack-based buffer overflow in bootpd in the DHCP component for Apple Mac OS X 10.3.9 and 10.4.7 allows remote attackers to execute arbitrary code via a crafted BOOTP request.
CVE-2006-3946
- EPSS 4.72%
- Published 31.07.2006 23:04:00
- Last modified 03.04.2025 01:03:51
WebCore in Apple Mac OS X 10.3.9 and 10.4 through 10.4.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted HTML that triggers a "memory management error" in WebKit, possibly due to a buffer o...
CVE-2006-3356
- EPSS 0.74%
- Published 06.07.2006 20:05:00
- Last modified 03.04.2025 01:03:51
The TIFFFetchAnyArray function in ImageIO in Apple OS X 10.4.7 and earlier allows remote user-assisted attackers to cause a denial of service (application crash) via an invalid tag value in a TIFF image, possibly triggering a null dereference. NOTE:...