Vulnerabilities

Summary — last 7 days

New vulnerabilities2,684▼ 86 vs. last week
Critical / high1,444▲ 301 vs. last week
New active exploitation (KEV)7▼ 3 vs. last week
Unscored (no CVSS)64▼ 462 vs. last week
–

3 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedLow (2.1)0.34%—Apple Xsan9/15/20096/16/2026
The screensharing feature in the Admin application in Apple Xsan before 2.2 places a cleartext username and password in a URL within an error dialog, which allows physically proximate attackers to obtain credentials by reading this dialog.
ModifiedMedium (4.6)0.49%—Apple XsanApple MAC OS XApple MAC OS X Server8/21/20066/16/2026
Buffer overflow in the Xsan Filesystem driver on Mac OS X 10.4.7 and OS X Server 10.4.7 allows local users with Xsan write access, to execute arbitrary code via unspecified vectors related to "processing a path name."
ModifiedLow (1.2)0.32%—Oliver Rauch Xsane1/15/20026/16/2026
xSANE 0.81 and earlier allows local users to modify files of other xSANE users via a symlink attack on temporary files.