Apple

macOS X Server

655 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 2.12%
  • Veröffentlicht 17.06.2010 16:30:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

ImageIO in Apple Mac OS X 10.5.8, and 10.6 before 10.6.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file with MPEG2 encoding.

  • EPSS 0.07%
  • Veröffentlicht 17.06.2010 16:30:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The Finder in DesktopServices in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, does not set the expected file ownerships during an "Apply to enclosed items" action, which allows local users to bypass intended access restrictions via normal filesyste...

  • EPSS 0.03%
  • Veröffentlicht 17.06.2010 16:30:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Folder Manager in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, allows local users to delete arbitrary folders via a symlink attack in conjunction with an unmount operation on a crafted volume, related to the Cleanup At Startup folder.

  • EPSS 0.52%
  • Veröffentlicht 17.06.2010 16:30:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Cross-site scripting (XSS) vulnerability in Help Viewer in Apple Mac OS X 10.6 before 10.6.4 allows remote attackers to inject arbitrary web script or HTML via a crafted help: URL, related to "URL parameters in HTML content."

  • EPSS 0.8%
  • Veröffentlicht 17.06.2010 16:30:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Directory traversal vulnerability in iChat in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, when AIM is used, allows remote attackers to create arbitrary files via directory traversal sequences in an inline image-transfer operation.

  • EPSS 0.05%
  • Veröffentlicht 17.06.2010 16:30:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

NetAuthSysAgent in Network Authorization in Apple Mac OS X 10.5.8 does not have the expected authorization requirements, which allows local users to gain privileges via unspecified vectors.

  • EPSS 3.7%
  • Veröffentlicht 17.06.2010 16:30:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple format string vulnerabilities in Network Authorization in Apple Mac OS X 10.6 before 10.6.4 allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via format string specifiers in a (1) afp, (2) cifs...

  • EPSS 1.03%
  • Veröffentlicht 17.06.2010 16:30:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Open Directory in Apple Mac OS X 10.6 before 10.6.4 creates an unencrypted connection upon certain SSL failures, which allows man-in-the-middle attackers to spoof arbitrary network account servers, and possibly execute arbitrary code, via unspecified...

  • EPSS 1.56%
  • Veröffentlicht 17.06.2010 16:30:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Printer Setup in Apple Mac OS X 10.6 before 10.6.4 does not properly interpret character encoding, which allows remote attackers to cause a denial of service (printing failure) by deploying a printing device that has a Unicode character in its printi...

  • EPSS 4.15%
  • Veröffentlicht 17.06.2010 16:30:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Integer overflow in the cgtexttops CUPS filter in Printing in Apple Mac OS X 10.6 before 10.6.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to page sizes.