VYPR

afpserver

by Apple Inc.

CVEs (11)

  • CVE-2005-0340May 2, 2005
    risk 0.03cvss epss 0.03

    Integer signedness error in Apple File Service (AFP Server) allows remote attackers to cause a denial of service (application crash) via a negative UAM string length in a FPLoginExt packet.

  • CVE-2010-1829Nov 15, 2010
    risk 0.00cvss epss 0.02

    Directory traversal vulnerability in AFP Server in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote authenticated users to execute arbitrary code by creating files that are outside the bounds of a share.

  • CVE-2010-1828Nov 15, 2010
    risk 0.00cvss epss 0.02

    AFP Server in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon restart) via crafted reconnect authentication packets.

  • CVE-2010-0057Mar 30, 2010
    risk 0.00cvss epss 0.01

    AFP Server in Apple Mac OS X before 10.6.3 does not prevent guest use of AFP shares when guest access is disabled, which allows remote attackers to bypass intended access restrictions via a mount request.

  • CVE-2006-1473Aug 2, 2006
    risk 0.00cvss epss 0.05

    Integer overflow in AFP Server for Apple Mac OS X 10.3.9 and 10.4.7 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via unknown vectors.

  • CVE-2006-1472Aug 2, 2006
    risk 0.00cvss epss 0.02

    Unspecified vulnerability in AFP Server in Apple Mac OS X 10.3.9 allows remote attackers to determine names of unauthorized files and folders via unknown vectors related to the search results.

  • CVE-2005-1721Jun 16, 2005
    risk 0.00cvss epss 0.02

    Buffer overflow in the legacy client support for AFP Server for Mac OS X 10.4.1 allows attackers to execute arbitrary code.

  • CVE-2005-1720Jun 16, 2005
    risk 0.00cvss epss 0.00

    AFP Server for Mac OS X 10.4.1, when using an ACL enabled volume, does not properly remove an ACL when a file is copied to a directory that does not use ACLs, which will override the POSIX file permissions for that ACL.

  • CVE-2005-0715Mar 21, 2005
    risk 0.00cvss epss 0.00

    AFP Server in Mac OS X before 10.3.8 uses insecure permissions for "Drop Boxes," which allows local users to read the contents of a Drop Box.

  • CVE-2004-0921Jan 27, 2005
    risk 0.00cvss epss 0.01

    AFP Server on Mac OS X 10.3.x to 10.3.5, when a guest has mounted an AFP volume, allows the guest to "terminate authenticated user mounts" via modified SessionDestroy packets.

  • CVE-2003-0379Jul 24, 2003
    risk 0.00cvss epss 0.02

    Unknown vulnerability in Apple File Service (AFP Server) for Mac OS X Server, when sharing files on a UFS or re-shared NFS volume, allows remote attackers to overwrite arbitrary files.