CVE-2007-4703
Last modified
CVE-2007-4703 is a vulnerability of currently unknown severity. The Application Firewall in Apple Mac OS X 10.5 does not prevent a root process from accepting incoming connections, even when "Block incoming connections" has been set for its associated executable, which might allow remote attackers or local root processes to bypass intended access restrictions.. EPSS estimates a 2.59% chance of exploitation in the next 30 days.
Description
The Application Firewall in Apple Mac OS X 10.5 does not prevent a root process from accepting incoming connections, even when "Block incoming connections" has been set for its associated executable, which might allow remote attackers or local root processes to bypass intended access restrictions.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Apple | Mac Os X | 10.5 |
| Apple | Mac Os X Server | 10.5 |
References
- http://secunia.com/advisories/27695Vendor Advisory
- http://www.vupen.com/english/advisories/2007/3897Vendor Advisory
- http://secunia.com/advisories/27695Vendor Advisory
- http://www.vupen.com/english/advisories/2007/3897Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-4703?
How severe is CVE-2007-4703?
How do I fix CVE-2007-4703?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2007
- CVE-2007-4697Unspecified vulnerability in WebCore in Apple Mac OS X 10.4 …
- CVE-2007-4698Apple Safari 3 before Beta Update 3.0.4 on Windows, and Mac …
- CVE-2007-4699The default configuration of Safari in Apple Mac OS X 10.4 t…
- CVE-2007-4700Unspecified vulnerability in WebKit on Apple Mac OS X 10.4 t…
- CVE-2007-4701WebKit on Apple Mac OS X 10.4 through 10.4.10 does not creat…
- CVE-2007-4702The Application Firewall in Apple Mac OS X 10.5, when "Block…
- CVE-2007-4704The Application Firewall in Apple Mac OS X 10.5 does not app…
- CVE-2007-4706Heap-based buffer overflow in Apple QuickTime before 7.3.1 a…
- CVE-2007-4707Multiple unspecified vulnerabilities in the Flash media hand…
- CVE-2007-4708Format string vulnerability in Address Book in Apple Mac OS …
- CVE-2007-4709Directory traversal vulnerability in CFNetwork in Apple Mac …
- CVE-2007-4710Unspecified vulnerability in ColorSync in Apple Mac OS X 10.…
Are you affected by CVE-2007-4703?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
