Apple Security Advisories · June 2003 — Apple Security Advisories
4 advisories 4 CVEs

Apple-vendor CVEs for 2003-06. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

CVE-2003-0370

OtherEPSS <= 49%HIGH2003-06-05

Konqueror Embedded and KDE 2.2.2 and earlier does not validate the Common Name (CN) field for X.509 Certificates, which could allow remote attackers to spoof certificates via a man-in-the-middle attack.

CVEs:CVE-2003-0370

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2003-0379

macOSEPSS <= 49%HIGH2003-06-18

Unknown vulnerability in Apple File Service (AFP Server) for Mac OS X Server, when sharing files on a UFS or re-shared NFS volume, allows remote attackers to overwrite arbitrary files.

CVEs:CVE-2003-0379

Affected products

ProductStatusVendorPackageEcosystem
afp_server affected apple
Upstream advisory

CVE-2003-0378

macOSEPSS <= 49%HIGH2003-06-06

The Kerberos login authentication feature in Mac OS X, when used with an LDAPv3 server and LDAP bind authentication, may send cleartext passwords to the LDAP server when the AuthenticationAuthority attribute is not set.

CVEs:CVE-2003-0378

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
Upstream advisory

CVE-2003-0420

macOSEPSS <= 49%MEDIUM2003-06-13

Information leak in dsimportexport for Apple Macintosh OS X Server 10.2.6 allows local users to obtain the username and password of the account running the tool.

CVEs:CVE-2003-0420

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x_server affected apple
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.