- EPSS 0.69%
- Published 18.03.2008 22:44:00
- Last modified 09.04.2025 00:30:58
CFNetwork in Apple Mac OS X 10.4.11 allows remote HTTPS proxy servers to spoof secure websites via data in a 502 Bad Gateway error.
CVE-2008-0051
- EPSS 0.06%
- Published 18.03.2008 22:44:00
- Last modified 09.04.2025 00:30:58
Integer overflow in CoreFoundation in Apple Mac OS X 10.4.11 might allow local users to execute arbitrary code via crafted time zone data.
CVE-2008-0057
- EPSS 2.56%
- Published 18.03.2008 22:44:00
- Last modified 09.04.2025 00:30:58
Multiple integer overflows in a "legacy serialization format" parser in AppKit in Apple Mac OS X 10.4.11 allows remote attackers to execute arbitrary code via a crafted serialized property list.
CVE-2008-0997
- EPSS 2.72%
- Published 18.03.2008 22:44:00
- Last modified 09.04.2025 00:30:58
Stack-based buffer overflow in AppKit in Apple Mac OS X 10.4.11 allows user-assisted remote attackers to cause a denial of service (application termination) and execute arbitrary code via a crafted PostScript Printer Description (PPD) file that is no...
CVE-2007-5860
- EPSS 0.06%
- Published 19.12.2007 21:46:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in Spin Tracer in Apple Mac OS X 10.5.1 allows local users to execute arbitrary code via unspecified output files, involving an "insecure file operation."
CVE-2007-5863
- EPSS 74.39%
- Published 19.12.2007 21:46:00
- Last modified 09.04.2025 00:30:58
Software Update in Apple Mac OS X 10.5.1 allows remote attackers to execute arbitrary commands via a man-in-the-middle (MITM) attack between the client and the server, using a modified distribution definition file with the "allow-external-scripts" op...
CVE-2007-6276
- EPSS 14%
- Published 07.12.2007 11:46:00
- Last modified 09.04.2025 00:30:58
The accept_connections function in the virtual private network daemon (vpnd) in Apple Mac OS X 10.5 before 10.5.4 allows remote attackers to cause a denial of service (divide-by-zero error and daemon crash) via a crafted load balancing packet to UDP ...
CVE-2007-4702
- EPSS 0.67%
- Published 15.11.2007 20:46:00
- Last modified 09.04.2025 00:30:58
The Application Firewall in Apple Mac OS X 10.5, when "Block all incoming connections" is enabled, does not prevent root processes or mDNSResponder from accepting connections, which might allow remote attackers or local root processes to bypass inten...
- EPSS 0.66%
- Published 15.11.2007 20:46:00
- Last modified 09.04.2025 00:30:58
The Application Firewall in Apple Mac OS X 10.5 does not prevent a root process from accepting incoming connections, even when "Block incoming connections" has been set for its associated executable, which might allow remote attackers or local root p...
CVE-2007-4700
- EPSS 0.65%
- Published 15.11.2007 02:46:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in WebKit on Apple Mac OS X 10.4 through 10.4.10 allows remote attackers to use Safari as an indirect proxy and send attacker-controlled data to arbitrary TCP ports via unknown vectors.