Total vulnerabilities in the database
CFNetwork in Apple Mac OS X 10.5 before 10.5.7 does not properly parse noncompliant Set-Cookie headers, which allows remote attackers to obtain sensitive information by sniffing the network for "secure cookies" that are sent over unencrypted HTTP connections.
Software | From | Fixed in |
---|---|---|
apple / mac_os_x_server | 10.5.2 | 10.5.2.x |
apple / mac_os_x | 10.5.6 | 10.5.6.x |
apple / mac_os_x | 10.5.5 | 10.5.5.x |
apple / mac_os_x | 10.5.1 | 10.5.1.x |
apple / mac_os_x_server | 10.5.1 | 10.5.1.x |
apple / mac_os_x_server | 10.5.6 | 10.5.6.x |
apple / mac_os_x | 10.5.3 | 10.5.3.x |
apple / mac_os_x_server | 10.5.3 | 10.5.3.x |
apple / mac_os_x | 10.5 | 10.5.x |
apple / mac_os_x_server | 10.5.4 | 10.5.4.x |
apple / mac_os_x | 10.5.2 | 10.5.2.x |
apple / mac_os_x | 10.5.4 | 10.5.4.x |