Apple
apple
8,801 CVEs • 196 products
Products (196)
Click to collapseToggle
Products (196)
Click to collapse
CVEs (8,801)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Personal Web Sharing 1.5.5 allows a remote attacker to cause a denial of service via a long HTTP request. |
Find-By-Content in Mac OS X 10.0 through 10.0.4 creates world-readable index files named .FBCIndex in every directory, which allows remote attackers to learn the contents of files in web accessible directories. |
Buffer overflow in QuickTime Player plugin 4.1.2 (Japanese) allows remote attackers to execute arbitrary commands via a long HREF parameter in an EMBED tag. |
"Multiple Users" Control Panel in Mac OS 9 allows Normal users to gain Owner privileges by removing the Users & Groups Data File, which effectively removes the Owner password and allows the Normal user to log in as the O...Show more |
Mac OS Runtime for Java (MRJ) 2.2.3 allows remote attackers to use malicious applets to read files outside of the CODEBASE context via the ARCHIVE applet parameter. |
The URLConnection function in MacOS Runtime Java (MRJ) 2.1 and earlier and the Microsoft virtual machine (VM) for MacOS allows a malicious web site operator to connect to arbitrary hosts using a HTTP redirection, in viol...Show more |
3Apple LinuxMicrosoft6Linux Kernel MacosWindows 2000+3 moreApr 16, 2026 Jun 1, 2000 N/A· v4 N/A· v3 10.0 HIGH· v2 A system does not present an appropriate legal message or warning to a user who is accessing it. |
AppleShare IP 6.1 and later allows a remote attacker to read potentially sensitive information via an invalid range request to the web server. |
Buffer overflow in WebObjects.exe in the WebObjects Developer 4.5 package allows remote attackers to cause a denial of service via an HTTP request with long headers such as Accept. |
4Apple BsdSgi+1 more4A Ux BsdIrix+1 moreApr 16, 2026 Dec 31, 1999 N/A· v4 N/A· v3 2.1 LOW· v2 lpr on SunOS 4.1.1, BSD 4.3, A/UX 2.0.1, and other BSD-based operating systems allows local users to create or overwrite arbitrary files via a symlink attack that is triggered after invoking lpr 1000 times. |
Macintosh systems generate large ICMP datagrams in response to malformed datagrams, allowing them to be used as amplifiers in a flood attack. |
Idle locking function in MacOS 9 allows local attackers to bypass the password protection of idled sessions via the programmer's switch or CMD-PWR keyboard sequence, which brings up a debugger that the attacker can use t...Show more |
Idle locking function in MacOS 9 allows local users to bypass the password protection of idled sessions by selecting the "Log Out" option and selecting a "Cancel" option in the dialog box for an application that attempts...Show more |
MacOS uses weak encryption for passwords that are stored in the Users & Groups Data File. |
A possible interaction between Apple MacOS X release 1.0 and Apache HTTP server allows remote attackers to cause a denial of service (crash) via a flood of HTTP GET requests to CGI programs, which generates a large numbe...Show more |
Control Panel "Password Security" option for Apple Powerbooks allows attackers with physical access to the machine to bypass the security by booting it with an emergency startup disk and using a disk editor to modify the...Show more |
iChat ROOMS Webserver allows remote attackers to read arbitrary files via a .. (dot dot) attack. |
Buffer overflow in Apple AppleShare Mail Server 5.0.3 on MacOS 8.1 and earlier allows a remote attacker to cause a denial of service (crash) via a long HELO command. |
3Apple PmailSeattlelab3Appleshare Mercury Mail ServerSlmailApr 16, 2026 Apr 1, 1998 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflow in SMTP HELO command in Sendmail allows a remote attacker to hide activities. |
11Apple CiscoHp+8 more14Aix BsdosHp Ux+11 moreMay 28, 2026 Aug 1, 1997 N/A· v4 4.0 MEDIUM· v3 2.1 LOW· v2 ICMP information such as (1) netmask and (2) timestamp is allowed from arbitrary hosts. |