CVE Vulnerabilities

CVE-2006-3504

Published: Aug 03, 2006 | Modified: Jul 20, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.1 MEDIUM
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The Download Validation in LaunchServices for Apple Mac OS X 10.4.7 can identify certain HTML as safe, which could allow attackers to execute Javascript code in local context when the Open safe files after downloading option is enabled in Safari.

Affected Software

Name Vendor Start Version End Version
Mac_os_x Apple 10.4.7 (including) 10.4.7 (including)
Mac_os_x_server Apple 10.4.7 (including) 10.4.7 (including)

References