7.6
CVSSv2

CVE-2011-1516

Published: 15/11/2011 Updated: 09/10/2018
CVSS v2 Base Score: 7.6 | Impact Score: 10 | Exploitability Score: 4.9
VMScore: 765
Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

The kSBXProfileNoNetwork and kSBXProfileNoInternet sandbox profiles in Apple Mac OS X 10.5.x up to and including 10.7.x do not propagate restrictions to all created processes, which allows remote malicious users to access network resources via a crafted application, as demonstrated by use of osascript to send Apple events to the launchd daemon, a related issue to CVE-2008-7303.

Vulnerable Product Search on Vulmon Subscribe to Product

apple mac os x 10.5.1

apple mac os x 10.5.2

apple mac os x 10.6.0

apple mac os x 10.6.1

apple mac os x 10.6.8

apple mac os x 10.7.0

apple mac os x 10.5.0

apple mac os x 10.5.7

apple mac os x 10.5.8

apple mac os x 10.6.6

apple mac os x 10.6.7

apple mac os x 10.5.3

apple mac os x 10.5.4

apple mac os x 10.6.2

apple mac os x 10.6.3

apple mac os x 10.7.1

apple mac os x 10.7.2

apple mac os x 10.5.5

apple mac os x 10.5.6

apple mac os x 10.6.4

apple mac os x 10.6.5

Exploits

Core Security - Corelabs Advisory corelabscoresecuritycom/ SAP Netweaver Dispatcher Multiple Vulnerabilities 1 *Advisory Information* Title: SAP Netweaver Dispatcher Multiple Vulnerabilities Advisory ID: CORE-2012-0123 Advisory URL: wwwcoresecuritycom/content/sap-netweaver-dispatcher-multiple-vulnerabilities Date published: 2 ...
Core Security Technologies Advisory - SAP Netweaver is a technology platform for building and integrating SAP business applications Multiple vulnerabilities have been found in SAP Netweaver that could allow an unauthenticated, remote attacker to execute arbitrary code and lead to denial of service conditions The vulnerabilities are triggered send ...