CVE-2004-0486
HIGH 7.6EPSS 9.7%
HelpViewer in Mac OS X 10.3.3 and 10.2.8 processes scripts that it did not initiate, which can allow attackers to execute arbitrary code, an issue that was originally reported as a directory traversal vulnerability in the Safari web browser using the runscript parameter in a help: URI handler.
- CVSS v2.0
- 7.6 HIGH
AV:N/AC:H/Au:N/C:C/I:C/A:C - EPSS
- 9.66% chance of exploitation in the next 30 days, 95th percentile
- Published
- 2004-05-28
- Updated
- 2024-08-08