VulnerabilityModified
CVE-2006-0388
Safari in Mac OS X 10.3 before 10.3.9 and 10.4 before 10.4.5 allows remote attackers to redirect users to local files and execute arbitrary JavaScript via unspecified vectors involving HTTP redirection to local resources.
LOW 2.6EPSS 0.77%
Does this matter?
Lower severity and a low EPSS score (0.77%). Track it; it rarely justifies an emergency change on its own.
Description
Safari in Mac OS X 10.3 before 10.3.9 and 10.4 before 10.4.5 allows remote attackers to redirect users to local files and execute arbitrary JavaScript via unspecified vectors involving HTTP redirection to local resources.
- CVSS 2.0
- 2.6 LOWAV:L/AC:H/Au:N/C:N/I:P/A:P
- EPSS
- 0.77% probability · 54th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-94
- Affected
- apple/mac os x · apple/mac os x server
- Source
- cve@mitre.org
References
- http://docs.info.apple.com/article.html?artnum=303382
- http://lists.apple.com/archives/security-announce/2006/Mar/msg00000.htmlPatch
- http://secunia.com/advisories/19064Patch, Vendor Advisory
- http://securitytracker.com/id?1015713Patch
- http://www.securityfocus.com/bid/16907Patch
- http://www.us-cert.gov/cas/techalerts/TA06-062A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2006/0791Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25038
- http://docs.info.apple.com/article.html?artnum=303382
- http://lists.apple.com/archives/security-announce/2006/Mar/msg00000.htmlPatch
- http://secunia.com/advisories/19064Patch, Vendor Advisory
- http://securitytracker.com/id?1015713Patch
- http://www.securityfocus.com/bid/16907Patch
- http://www.us-cert.gov/cas/techalerts/TA06-062A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2006/0791Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25038
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.