Vulnerabilities (CVE)

Filtered by vendor Apple Subscribe
Total 14893 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0041 1 Apple 1 Macos 2026-06-16 5.0 MEDIUM N/A
Macintosh systems generate large ICMP datagrams in response to malformed datagrams, allowing them to be used as amplifiers in a flood attack.
CVE-1999-1543 1 Apple 1 Macos 2026-06-16 4.6 MEDIUM N/A
MacOS uses weak encryption for passwords that are stored in the Users & Groups Data File.
CVE-1999-1412 2 Apache, Apple 2 Http Server, Macos 2026-06-16 5.0 MEDIUM N/A
A possible interaction between Apple MacOS X release 1.0 and Apache HTTP server allows remote attackers to cause a denial of service (crash) via a flood of HTTP GET requests to CGI programs, which generates a large number of processes.
CVE-1999-1393 1 Apple 1 Macos 2026-06-16 4.6 MEDIUM N/A
Control Panel "Password Security" option for Apple Powerbooks allows attackers with physical access to the machine to bypass the security by booting it with an emergency startup disk and using a disk editor to modify the on/off toggle or password in the aaaaaaaAPWD file, which is normally inaccessible.
CVE-1999-1102 4 Apple, Bsd, Sgi and 1 more 4 A Ux, Bsd, Irix and 1 more 2026-06-16 2.1 LOW N/A
lpr on SunOS 4.1.1, BSD 4.3, A/UX 2.0.1, and other BSD-based operating systems allows local users to create or overwrite arbitrary files via a symlink attack that is triggered after invoking lpr 1000 times.
CVE-1999-1077 1 Apple 1 Macos 2026-06-16 4.6 MEDIUM N/A
Idle locking function in MacOS 9 allows local attackers to bypass the password protection of idled sessions via the programmer's switch or CMD-PWR keyboard sequence, which brings up a debugger that the attacker can use to disable the lock.
CVE-1999-1076 1 Apple 1 Macos 2026-06-16 4.6 MEDIUM N/A
Idle locking function in MacOS 9 allows local users to bypass the password protection of idled sessions by selecting the "Log Out" option and selecting a "Cancel" option in the dialog box for an application that attempts to verify that the user wants to log out, which returns the attacker into the locked session.
CVE-1999-1015 1 Apple 1 Appleshare Mail Server 2026-06-16 5.0 MEDIUM N/A
Buffer overflow in Apple AppleShare Mail Server 5.0.3 on MacOS 8.1 and earlier allows a remote attacker to cause a denial of service (crash) via a long HELO command.
CVE-1999-0897 1 Apple 1 Ichat Server 2026-06-16 5.0 MEDIUM N/A
iChat ROOMS Webserver allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVE-1999-0590 3 Apple, Linux, Microsoft 6 Macos, Linux Kernel, Windows 2000 and 3 more 2026-06-16 10.0 HIGH N/A
A system does not present an appropriate legal message or warning to a user who is accessing it.
CVE-1999-0524 11 Apple, Cisco, Hp and 8 more 14 Mac Os X, Macos, Ios and 11 more 2026-06-16 2.1 LOW 4.0 MEDIUM
ICMP information such as (1) netmask and (2) timestamp is allowed from arbitrary hosts.
CVE-1999-0138 7 Apple, Digital, Freebsd and 4 more 9 A Ux, Osf 1, Freebsd and 6 more 2026-06-16 7.2 HIGH N/A
The suidperl and sperl program do not give up root privileges when changing UIDs back to the original users, allowing root access.
CVE-1999-0098 3 Apple, Pmail, Seattlelab 3 Appleshare, Mercury Mail Server, Slmail 2026-06-16 10.0 HIGH N/A
Buffer overflow in SMTP HELO command in Sendmail allows a remote attacker to hide activities.