Searching os 400 software vulnerabilities


Unknown vulnerability in NetInfo Manager applic


Unknown vulnerability in NetInfo Manager application in Mac OS X 10.2.2 allows local users to access restricted parts of a filesystem.


Mac OS X before 10.2.5 allows guest users to mo

before | Mac |

Mac OS X before 10.2.5 allows guest users to modify the permissions of the DropBox folder and read unauthorized files.


Unknown vulnerability in QuickTime Java in Mac


Unknown vulnerability in QuickTime Java in Mac OS X v10.3 and Mac OS X Server 10.3 allows attackers to gain "unauthorized access to a system."


Unknown vulnerability in the Terminal applicati


Unknown vulnerability in the Terminal application for Mac OS X 10.3 (Client and Server) may allow "unauthorized access."


AppleFileServer (AFS) in Apple Mac OS X 10.2.8


AppleFileServer (AFS) in Apple Mac OS X 10.2.8 and 10.3.2 does not properly handle certain malformed requests, with unknown impact.


Unknown vulnerability in fs_usage in Mac OS X 1


Unknown vulnerability in fs_usage in Mac OS X 10.2.8 and 10.3.2 and Mac OS X Server 10.2.8 and 10.3.2 allows local users to gain privileges via unknown attack vectors.


Microsoft URLScan 2.5, with the RemoveServerHea


Microsoft URLScan 2.5, with the RemoveServerHeader option enabled, allows remote attackers to obtain sensitive information (server name and version) via an HTTP request that generates certain errors such as 400 "Bad Request," which leak the Server header in the response.


Unknown vulnerability in CoreFoundation for Mac


Unknown vulnerability in CoreFoundation for Mac OS X 10.3.2, related to "notification logging."


Unknown vulnerability in the CUPS printing syst


Unknown vulnerability in the CUPS printing system in Mac OS X 10.3.3 and Mac OS X 10.2.8 with unknown impact, possibly related to a configuration file setting.


Unknown vulnerability in CoreFoundation in Mac


Unknown vulnerability in CoreFoundation in Mac OS X 10.3.3 and Mac OS X 10.3.3 Server, related to "the handling of an environment variable," has unknown attack vectors and unknown impact.


Unknown vulnerability related to "the handling


Unknown vulnerability related to "the handling of large requests" in RAdmin for Apple Mac OS X 10.3.3 and Mac OS X 10.2.8 may allow attackers to have unknown impact via unknown attack vectors.


Unspecified vulnerability in Java 1.3.1 before


Unspecified vulnerability in Java 1.3.1 before 1.3.1_16 on Apple Mac OS X allows an untrusted applet to gain privileges, related to "Mac OS X specific extensions."


Heap-based buffer overflow in CoreFoundation in


Heap-based buffer overflow in CoreFoundation in Mac OS X and OS X Server 10.4 through 10.4.3 allows remote attackers to execute arbitrary code via unknown attack vectors involving "validation of URLs."


mod_ssl in Apache 2.0 up to 2.0.55, when config


mod_ssl in Apache 2.0 up to 2.0.55, when configured with an SSL vhost with access control and a custom error 400 error page, allows remote attackers to cause a denial of service (application crash) via a non-SSL request to an SSL port, which triggers a NULL pointer dereference.


Unknown vulnerability in iodbcadmintool in the


Unknown vulnerability in iodbcadmintool in the ODBC Administrator utility in Mac OS X and OS X Server 10.3.9 and 10.4.3 allows local users to execute arbitrary code via unknown attack vectors.


Safari in Mac OS X and OS X Server 10.3.9 and 1


Safari in Mac OS X and OS X Server 10.3.9 and 10.4.3 allows remote attackers to cause files to be downloaded to locations outside the download directory via a long file name.


System log server in Mac OS X and OS X Server 1

server | System | Mac | log |

System log server in Mac OS X and OS X Server 10.4 through 10.4.3 allows remote attackers to spoof syslog messages in log files by injecting various control characters such as newline (NL).


Heap-based buffer overflow in WebKit in Mac OS


Heap-based buffer overflow in WebKit in Mac OS X and OS X Server 10.3.9 and 10.4.3, as used in applications such as Safari, allows remote attackers to execute arbitrary code via unknown attack vectors.


Cross-site scripting (XSS) vulnerability in kPl


Cross-site scripting (XSS) vulnerability in kPlaylist 1.6 (build 400), and possibly other versions, allows remote attackers to inject arbitrary web script or HTML via the searchfor search parameter.


Cross-site scripting (XSS) vulnerability in Che


Cross-site scripting (XSS) vulnerability in Cherokee HTTPD 0.5 and earlier allows remote attackers to inject arbitrary web script or HTML via a malformed request that generates an HTTP 400 error, which is not properly handled when the error message is generated.


Software vulnerabilities results 1 to 20 of 442     
Page: 12345...23