← Back

CVE-2009-0942

nvd nist
Published: May 13, 2009Modified: Apr 23, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

Help Viewer in Apple Mac OS X 10.4.11 and 10.5 before 10.5.7 does not verify that certain Cascading Style Sheets (CSS) are located in a registered help book, which allows remote attackers to execute arbitrary code via a help: URL that triggers invocation of AppleScript files.

Affected (16)

2 products
Mac Os X
Mac Os X Server
Configuration A
16 vulnerable
Vulnerable SoftwareAffected Versions
Apple
Version 10.4.11
Version 10.5.0
Version 10.5.1
Version 10.5.2
Version 10.5.3
Version 10.5.4
Version 10.5.5
Version 10.5.6
Apple
Version 10.4.11
Version 10.5.0
Version 10.5.1
Version 10.5.2
Version 10.5.3
Version 10.5.4
Version 10.5.5
Version 10.5.6

References (16)

Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.