peter bassill · operator
$ cve CVE-2004-0430 JSON

CVE-2004-0430 EXPLOIT

5.1
MEDIUM · CVSS 2.0 · EPSS 41.3% (pctl 99)

Patch early

A public exploit exists.

Description

Stack-based buffer overflow in AppleFileServer for Mac OS X 10.3.3 and earlier allows remote attackers to execute arbitrary code via a LoginExt packet for a Cleartext Password User Authentication Method (UAM) request with a PathName argument that includes an AFPName type string that is longer than the associated length field.

Scoring

CVSS5.1 (MEDIUM, v2.0)
VectorAV:N/AC:H/Au:N/C:P/I:P/A:P
EPSS41.3% — more likely to be exploited than 99% of all CVEs
On CISA KEVno
Public exploityes
Published2004-07-07
Last modified2026-06-16

Affected (2)

VendorProduct
applemac os x
applemac os x server

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD