Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Apple Mac OS X Help Viewer Remote Applescript Code Execution Vulnerability

Apple Mac OS X Help Viewer is prone to a remote arbitrary Applescript code-execution vulnerability.

An attacker can exploit this issue by enticing an unsuspecting user to visit a malicious 'help:topic_list' URI. This may allow arbitrary Applescript code to run in the context of the user running the application.

NOTE: This vulnerability was previously covered in BID 28304 (Apple Mac OS X 2008-002 Multiple Security Vulnerabilities), but has been given its own record to better document the issue.







 

Privacy Statement
Copyright 2007, SecurityFocus