← Back

Xsan

xsan

Vendor: Apple • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Apple
1Xsan
Apr 23, 2026
Sep 15, 2009
N/A· v4
N/A· v3
2.1 LOW· v2
The screensharing feature in the Admin application in Apple Xsan before 2.2 places a cleartext username and password in a URL within an error dialog, which allows physically proximate attackers to obtain credentials by r...Show more
The screensharing feature in the Admin application in Apple Xsan before 2.2 places a cleartext username and password in a URL within an error dialog, which allows physically proximate attackers to obtain credentials by reading this dialog.Show less
1Apple
3Mac Os X
Mac Os X ServerXsan
Apr 16, 2026
Aug 21, 2006
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Buffer overflow in the Xsan Filesystem driver on Mac OS X 10.4.7 and OS X Server 10.4.7 allows local users with Xsan write access, to execute arbitrary code via unspecified vectors related to "processing a path name."