265231
|
- |
|
apple
|
quicktime
|
Apple QuickTime before 7.4.5 does not properly handle external URLs in movies, which allows remote attackers to obtain sensitive information.
|
CWE-200 CWE-20
Information Exposure Improper Input Validation
|
CVE-2008-1014
|
2017-08-8 10:29 |
2008-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265232
|
- |
|
apple
|
quicktime
|
Buffer overflow in the data reference atom handling in Apple QuickTime before 7.4.5 allows remote attackers to execute arbitrary code via a crafted movie.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1015
|
2017-08-8 10:29 |
2008-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265233
|
- |
|
apple
|
quicktime
|
Apple QuickTime before 7.4.5 does not properly handle movie media tracks, which allows remote attackers to execute arbitrary code via a crafted movie that triggers memory corruption.
|
CWE-94
Code Injection
|
CVE-2008-1016
|
2017-08-8 10:29 |
2008-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265234
|
- |
|
apple
|
quicktime
|
Heap-based buffer overflow in Clip opcode parsing in Apple QuickTime before 7.4.5 on Windows allows remote attackers to execute arbitrary code via a crafted PICT image file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1023
|
2017-08-8 10:29 |
2008-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265235
|
- |
|
apple
|
safari
|
Apple Safari before 3.1.1, when running on Windows XP or Vista, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a file download with a crafted fil…
|
CWE-399
Resource Management Errors
|
CVE-2008-1024
|
2017-08-8 10:29 |
2008-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265236
|
- |
|
apple
|
safari webkit
|
Cross-site scripting (XSS) vulnerability in Apple WebKit, as used in Safari before 3.1.1, allows remote attackers to inject arbitrary web script or HTML via a crafted URL with a colon in the hostname…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1025
|
2017-08-8 10:29 |
2008-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265237
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Apple Filing Protocol (AFP) Server in Apple Mac OS X before 10.5.3 does not verify that requested files and directories are inside shared folders, which allows remote attackers to read arbitrary file…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-1027
|
2017-08-8 10:29 |
2008-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265238
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Unspecified vulnerability in AppKit in Apple Mac OS X before 10.5 allows user-assisted remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted docume…
|
NVD-CWE-noinfo CWE-20
Improper Input Validation
|
CVE-2008-1028
|
2017-08-8 10:29 |
2008-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265239
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Integer overflow in the CFDataReplaceBytes function in the CFData API in CoreFoundation in Apple Mac OS X before 10.5.3 allows context-dependent attackers to execute arbitrary code or cause a denial …
|
CWE-20
Improper Input Validation
|
CVE-2008-1030
|
2017-08-8 10:29 |
2008-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265240
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
CoreGraphics in Apple Mac OS X before 10.5.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PDF document, related to an uninitialized…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1031
|
2017-08-8 10:29 |
2008-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|