Page 426 of 2130 results (0.013 seconds)

CVSS: 2.1EPSS: 0%CPEs: 7EXPL: 0

Point to Point Protocol daemon (pppd) in MacOS x 10.0 and 10.1 through 10.1.5 provides the username and password on the command line, which allows local users to obtain authentication information via the ps command. • http://www.iss.net/security_center/static/7750.php http://www.macsecurity.org/pipermail/macsec/2001-December/000299.html http://www.securityfocus.com/bid/3753 •

CVSS: 3.6EPSS: 0%CPEs: 6EXPL: 0

Apple MacOS X 10.0 and 10.1 allow a local user to read and write to a user's desktop folder via insecure default permissions for the Desktop when it is created in some languages. • http://marc.info/?l=bugtraq&m=99358249631139&w=2 http://marc.info/?l=bugtraq&m=99436289015729&w=2 http://online.securityfocus.com/archive/1/219166 http://www.osvdb.org/1882 http://www.securityfocus.com/bid/2930 https://exchange.xforce.ibmcloud.com/vulnerabilities/6750 •

CVSS: 7.2EPSS: 0%CPEs: 6EXPL: 4

NetInfo Manager for Mac OS X 10.0 through 10.1 allows local users to gain root privileges by opening applications using the (1) "recent items" and (2) "services" menus, which causes the applications to run with root privileges. • http://archives.neohapsis.com/archives/bugtraq/2001-10/0121.html http://archives.neohapsis.com/archives/bugtraq/2001-10/0130.html http://www.ciac.org/ciac/bulletins/m-007.shtml http://www.kb.cert.org/vuls/id/945747 http://www.securityfocus.com/bid/3439 https://exchange.xforce.ibmcloud.com/vulnerabilities/7303 •

CVSS: 9.8EPSS: 0%CPEs: 2EXPL: 2

Apache on MacOS X Client 10.0.3 with the HFS+ file system allows remote attackers to bypass access restrictions via a URL that contains some characters whose case is not matched by Apache's filters. • https://www.exploit-db.com/exploits/20911 http://archives.neohapsis.com/archives/bugtraq/2001-06/0090.html http://www.securityfocus.com/bid/2852 • CWE-178: Improper Handling of Case Sensitivity •

CVSS: 7.5EPSS: 1%CPEs: 5EXPL: 0

Find-By-Content in Mac OS X 10.0 through 10.0.4 creates world-readable index files named .FBCIndex in every directory, which allows remote attackers to learn the contents of files in web accessible directories. • http://archives.neohapsis.com/archives/bugtraq/2001-09/0085.html http://www.kb.cert.org/vuls/id/177243 http://www.securityfocus.com/bid/3325 https://exchange.xforce.ibmcloud.com/vulnerabilities/7103 •