Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
apple mac os x 10.3.9 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2007-2409
Cross-domain vulnerability in WebCore on Apple Mac OS X 10.3.9 and 10.4.10 allows remote malicious users to obtain sensitive information via a popup window, which is able to read the current URL of the parent window.
Apple Webcore
NA
CVE-2007-2410
WebCore on Apple Mac OS X 10.3.9 and 10.4.10 retains properties of certain global objects when a new URL is visited in the same window, which allows remote malicious users to conduct cross-site scripting (XSS) attacks.
Apple Webcore
NA
CVE-2007-3745
The Java interface to CoreAudio on Apple Mac OS X 10.3.9 and 10.4.10 contains an unsafe interface that is exposed by JDirect, which allows remote malicious users to free arbitrary memory and thereby execute arbitrary code.
Apple Core Audio Technologies
NA
CVE-2007-3746
The Java interface to CoreAudio on Apple Mac OS X 10.3.9 and 10.4.10 does not properly check the bounds of heap read and write operations, which allows remote malicious users to execute arbitrary code via a crafted applet.
Apple Ichat
NA
CVE-2007-3747
The Java interface to CoreAudio on Apple Mac OS X 10.3.9 and 10.4.10 does not restrict object instantiation and manipulation to valid heap addresses, which allows remote malicious users to execute arbitrary code via a crafted applet.
Apple Ichat
NA
CVE-2007-3748
Buffer overflow in the UPnP IGD (Internet Gateway Device Standardized Device Control Protocol) implementation in iChat on Apple Mac OS X 10.3.9 and 10.4.10 allows network-adjacent remote malicious users to execute arbitrary code via a crafted packet.
Apple Ichat
NA
CVE-2007-2392
Apple Quicktime prior to 7.2 on Mac OS X 10.3.9 and 10.4.9 allows user-assisted remote malicious users to execute arbitrary code via a crafted movie file that triggers memory corruption.
Apple Quicktime -
Apple Quicktime 7.0
Apple Quicktime 7.0.1
Apple Quicktime 7.0.2
Apple Quicktime 7.0.3
Apple Quicktime 7.0.4
Apple Quicktime 7.1
Apple Quicktime 7.1.1
Apple Quicktime 7.1.2
Apple Quicktime 7.1.3
Apple Quicktime 7.1.4
Apple Quicktime 7.1.5
NA
CVE-2007-2394
Integer overflow in Apple Quicktime prior to 7.2 on Mac OS X 10.3.9 and 10.4.9 allows user-assisted remote malicious users to execute arbitrary code via crafted (1) title and (2) author fields in an SMIL file, related to improper calculations for memory allocation.
Apple Quicktime -
Apple Quicktime 7.0
Apple Quicktime 7.0.1
Apple Quicktime 7.0.2
Apple Quicktime 7.0.3
Apple Quicktime 7.0.4
Apple Quicktime 7.1
Apple Quicktime 7.1.1
Apple Quicktime 7.1.2
Apple Quicktime 7.1.3
Apple Quicktime 7.1.4
Apple Quicktime 7.1.5
2 EDB exploits
NA
CVE-2007-1863
cache_util.c in the mod_cache module in Apache HTTP Server (httpd), when caching is enabled and a threaded Multi-Processing Module (MPM) is used, allows remote malicious users to cause a denial of service (child processing handler crash) via a request with the (1) s-maxage, (2) m...
Apple Mac Os X Server 10.4.3
Apple Mac Os X Server 10.3.2
Apple Mac Os X Server 10.1.5
Apple Mac Os X Server 10.1
Apple Mac Os X Server 10.2.2
Apple Mac Os X Server 10.1.1
Apple Mac Os X Server 10.2.4
Apple Mac Os X Server 10.4.9
Apple Mac Os X Server 10.1.2
Apple Mac Os X Server 10.3.7
Apple Mac Os X Server 10.3.5
Apple Mac Os X Server 10.4.2
Apple Mac Os X Server 10.3.3
Apple Mac Os X Server 10.2.7
Apple Mac Os X Server 10.4.4
Apple Mac Os X Server 10.2.3
Apple Mac Os X Server 10.4.1
Apple Mac Os X Server 10.3.4
Apple Mac Os X Server 10.2.5
Apple Mac Os X Server 10.4
Apple Mac Os X Server 10.4.5
Apple Mac Os X Server 10.3
NA
CVE-2007-2399
WebKit in Apple Mac OS X 10.3.9, 10.4.9 and later, and iPhone prior to 1.0.1 performs an "invalid type conversion", which allows remote malicious users to execute arbitrary code via unspecified frame sets that trigger memory corruption.
Apple Mac Os X 10.3.9
Apple Mac Os X 10.4.9
Apple Mac Os X Server 10.3.9
Apple Mac Os X Server 10.4.9
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
TCP
CVE-2024-4577
CVE-2024-2695
CVE-2024-31870
injection
CVE-2024-3813
arbitrary code
CVE-2024-27801
CVE-2024-30120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
9
10
NEXT »