Vulnerabilities > CVE-2005-1408 - Unspecified vulnerability in Apple Keynote 2.0.0/2.0.1
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN apple
nessus
Summary
Apple Keynote 2.0 and 2.0.1 allows remote attackers to read arbitrary files via the keynote: URI handler in a crafted Keynote presentation.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Nessus
NASL family | MacOS X Local Security Checks |
NASL id | MACOSX_KEYNOTE202.NASL |
description | The remote host contains a version of Keynote 2 which is older than 2.0.2. The installed version is affected by a security issue which may allow an attacker to send a rogue keynote file containing malformed URI links in it. An attacker can exploit this issue to read and upload arbitrary local files to an arbitrary location. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 18369 |
published | 2005-05-26 |
reporter | This script is Copyright (C) 2005-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/18369 |
title | Apple Keynote Presentation < 2.0.2 keynote: URI Handler Arbitrary File Access |
code |
|