|
298511
|
- |
|
apple
|
safari
|
Directory traversal vulnerability in Apple Safari before 5.1.1 allows remote attackers to execute arbitrary JavaScript code, in a Safari Extensions context, via a crafted safari-extension: URL.
|
CWE-22 CWE-94
Path Traversal Code Injection
|
CVE-2011-3229
|
2024-11-21 10:30 |
2011-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298512
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
QuickTime in Apple Mac OS X before 10.7.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file.
|
CWE-94
Code Injection
|
CVE-2011-3228
|
2024-11-21 10:30 |
2011-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298513
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
libsecurity in Apple Mac OS X before 10.7.2 does not properly handle errors during processing of a nonstandard extension in a Certificate Revocation list (CRL), which allows remote attackers to execu…
|
CWE-20
Improper Input Validation
|
CVE-2011-3227
|
2024-11-21 10:30 |
2011-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298514
|
- |
|
apple
|
mac_os_x_server mac_os_x
|
Open Directory in Apple Mac OS X 10.7 before 10.7.2, when an LDAPv3 server is used with RFC 2307 or custom mappings, allows remote attackers to bypass the password requirement by leveraging lack of a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-3226
|
2024-11-21 10:30 |
2011-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298515
|
- |
|
apple
|
mac_os_x_server mac_os_x
|
The SMB File Server component in Apple Mac OS X 10.7 before 10.7.2 does not prevent all guest users from accessing the share point record of a guest-restricted folder, which allows remote attackers t…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-3225
|
2024-11-21 10:30 |
2011-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298516
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
The User Documentation component in Apple Mac OS X through 10.6.8 uses http sessions for updates to App Store help information, which allows man-in-the-middle attackers to execute arbitrary code by s…
|
NVD-CWE-Other
|
CVE-2011-3224
|
2024-11-21 10:30 |
2011-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298517
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Buffer overflow in QuickTime in Apple Mac OS X before 10.7.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FLIC movie file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-3223
|
2024-11-21 10:30 |
2011-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298518
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Buffer overflow in QuickTime in Apple Mac OS X before 10.7.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FlashPix file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-3222
|
2024-11-21 10:30 |
2011-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298519
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
QuickTime in Apple Mac OS X before 10.7.2 does not properly handle the atom hierarchy in movie files, which allows remote attackers to execute arbitrary code or cause a denial of service (application…
|
CWE-94
Code Injection
|
CVE-2011-3221
|
2024-11-21 10:30 |
2011-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298520
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
QuickTime in Apple Mac OS X before 10.7.2 does not properly process URL data handlers in movie files, which allows remote attackers to obtain sensitive information from uninitialized memory locations…
|
CWE-200
Information Exposure
|
CVE-2011-3220
|
2024-11-21 10:30 |
2011-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|