Vulnerabilities > CVE-2004-0538 - Unspecified vulnerability in Apple mac OS X and mac OS X Server
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN apple
nessus
Summary
LaunchServices in Mac OS X 10.3.4 and 10.2.8 automatically registers and executes new applications, which could allow attackers to execute arbitrary code without warning the user.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 4 |
Nessus
NASL family | MacOS X Local Security Checks |
NASL id | MACOSX_SECUPD20040607.NASL |
description | The remote host is missing Security Update 2004-06-07. This security update includes fixes for the following components : DiskImages LaunchServices Safari Terminal This update fixes a security problem which may allow an attacker to execute arbitrary commands the on the remote host by abusing of a flaw in Safari and the components listed above. To exploit this flaw, an attacker would need to set up a rogue web site with malformed HTML links, and lure the user of the remote host into visiting them. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 12520 |
published | 2004-07-06 |
reporter | This script is Copyright (C) 2004-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/12520 |
title | Mac OS X Multiple Vulnerabilities (Security Update 2004-06-07) |
code |
|