CVE-2006-0397

medium

Description

Unspecified vulnerability in Safari, LaunchServices, and/or CoreTypes in Apple Mac OS X 10.4 up to 10.4.5 allows attackers to trick a user into opening an application that appears to be a safe file type. NOTE: due to the lack of specific information in the vendor advisory, it is not clear how CVE-2006-0397, CVE-2006-0398, and CVE-2006-0399 are different.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/25269

http://www.vupen.com/english/advisories/2006/0949

http://www.osvdb.org/23869

http://securitytracker.com/id?1015760

http://secunia.com/advisories/19129

http://lists.apple.com/archives/security-announce/2006/Mar/msg00001.html

http://docs.info.apple.com/article.html?artnum=303453

Details

Source: Mitre, NVD

Published: 2006-03-14

Updated: 2017-07-20

Risk Information

CVSS v2

Base Score: 7.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Severity: High

CVSS v3

Base Score: 6.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Severity: Medium