📦

mac_os_x_server

Vendor: apple

Actively Exploited 0 CISA KEV List
PoC / Exploits 40 Code Available
Total RCEs 148 Remote Access
Total CVEs 10603 Total Indexed
Avg. EPSS 2.85% Exploit Prob.
Latest CVE CVE-2010-1821 Apr 13

Security Vulnerability Index

Page 1 / 1061
7.8 CVSS

Apple Mac OS X 10.6 through 10.6.3 and Mac OS X Server 10.6 through 10.6.3 allows local users to obtain system privileges.

EPSS: 0.04%
7.8 CVSS

Buffer overflow in ImageIO in Apple Mac OS X 10.6 through 10.6.3 and Mac OS X Server 10.6 through 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (crash) via a crafted image.

EPSS: 0.82%
5.3 CVSS

Wiki Server in Apple OS X Server before 5.1 allows remote attackers to obtain sensitive information from Wiki pages via unspecified vectors.

EPSS: 0.37%
7.5 CVSS

Web Server in Apple OS X Server before 5.1 supports the RC4 algorithm, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via unspecified vectors.

EPSS: 0.40%
5.3 CVSS

Web Server in Apple OS X Server before 5.1 does not properly restrict access to .DS_Store and .htaccess files, which allows remote attackers to obtain sensitive configuration information via an HTTP request.

EPSS: 0.28%
5.3 CVSS

The Time Machine server in Server App in Apple OS X Server before 5.1 does not notify the user about ignored permissions during a backup, which makes it easier for remote attackers to obtain sensitive information in opportunistic circumstances by reading backup data that lacks intended restrictions.

EPSS: 0.32%
5.0 CVSS

The Web Service component in Apple OS X Server before 5.0.15 omits an unspecified HTTP header configuration, which allows remote attackers to bypass intended access restrictions via unknown vectors.

EPSS: 0.26%
10.0 CVSS

Multiple unspecified vulnerabilities in Twisted in Wiki Server in Apple OS X Server before 5.0.3 allow attackers to have an unknown impact via an XML document.

EPSS: 0.39%
6.8 CVSS

Buffer overflow in QT Media Foundation in Apple OS X before 10.9.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted MIDI file.

EPSS: 2.35%
6.8 CVSS

QT Media Foundation in Apple OS X before 10.9.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file with RLE encoding.

EPSS: 2.58%