Page 562 of 2946 results (0.008 seconds)

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

The HTTP proxy service in Server Admin for Mac OS X 10.3.9 does not restrict access when it is enabled, which allows remote attackers to use the proxy. • http://lists.apple.com/archives/security-announce/2005/May/msg00001.html •

CVSS: 4.6EPSS: 0%CPEs: 1EXPL: 0

Buffer overflow in the Foundation framework for Mac OS X 10.3.9 allows local users to execute arbitrary code via a long environment variable. • http://lists.apple.com/archives/security-announce/2005/May/msg00001.html http://www.kb.cert.org/vuls/id/582934 http://www.us-cert.gov/cas/techalerts/TA05-136A.html •

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 0

Bluetooth-enabled systems in Mac OS X 10.3.9 enables the Bluetooth file exchange service by default, which allows remote attackers to access files without the user being notified, and local users to access files via the default directory. • http://docs.info.apple.com/article.html?artnum=301381 http://lists.apple.com/archives/security-announce/2005/May/msg00001.html http://www.digitalmunition.com/DMA%5B2005-0502a%5D.txt http://www.kb.cert.org/vuls/id/258390 http://www.us-cert.gov/cas/techalerts/TA05-136A.html •

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 0

lukemftpd in Mac OS X 10.3.9 allows remote authenticated users to escape the chroot environment by logging in with their full name. • http://lists.apple.com/archives/security-announce/2005/May/msg00001.html •

CVSS: 5.0EPSS: 1%CPEs: 1EXPL: 1

Directory traversal vulnerability in the Bluetooth file and object exchange (OBEX) services in Mac OS X 10.3.9 allows remote attackers to read arbitrary files. • https://www.exploit-db.com/exploits/25598 http://lists.apple.com/archives/security-announce/2005/Jun/msg00000.html http://lists.apple.com/archives/security-announce/2005/May/msg00001.html http://www.digitalmunition.com/DMA%5B2005-0502a%5D.txt http://www.securityfocus.com/bid/13491 •