Apple

Apple Remote Desktop

6 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.06%
  • Published 14.11.2015 03:59:00
  • Last modified 12.04.2025 10:46:40

The Remote Desktop full-screen feature in Apple OS X before 10.9 and Apple Remote Desktop before 3.7 sends dialog-box text to a connected remote host upon being woken from sleep, which allows physically proximate attackers to bypass intended access r...

  • EPSS 3.06%
  • Published 24.10.2013 03:48:48
  • Last modified 11.04.2025 00:51:21

Format string vulnerability in Screen Sharing Server in Apple Mac OS X before 10.9 and Apple Remote Desktop before 3.5.4 allows remote attackers to execute arbitrary code via format string specifiers in a VNC username.

  • EPSS 0.27%
  • Published 24.10.2013 03:48:48
  • Last modified 11.04.2025 00:51:21

Apple Remote Desktop before 3.7 does not properly use server authentication-type information during decisions about whether to present an unencrypted-connection warning message, which allows remote attackers to obtain sensitive information in opportu...

  • EPSS 0.49%
  • Published 22.08.2012 10:42:04
  • Last modified 11.04.2025 00:51:21

Apple Remote Desktop before 3.6.1 does not recognize the "Encrypt all network data" setting during connections to third-party VNC servers, which allows remote attackers to obtain cleartext VNC session content by sniffing the network.

  • EPSS 0.07%
  • Published 19.09.2006 21:07:00
  • Last modified 03.04.2025 01:03:51

Apple Remote Desktop (ARD) for Mac OS X 10.2.8 and later does not drop privileges on the remote machine while installing certain applications, which allows local users to bypass authentication and gain privileges by selecting the icon during installa...

  • EPSS 1.78%
  • Published 09.02.2005 05:00:00
  • Last modified 03.04.2025 01:03:51

Apple Remote Desktop Client 1.2.4 executes a GUI application as root when it is started by an Apple Remote Desktop Administrator application, which allows remote authenticated users to execute arbitrary code when loginwindow is active via Fast User S...