PT-2004-1648 · Apple · Safari

Published

2004-06-11

·

Updated

2017-10-12

·

CVE-2004-0539

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Safari versions 10.2.8 through 10.3.4
Description The issue allows remote attackers to execute arbitrary code by exploiting the "Show in Finder" button in the Safari web browser. This could lead to the execution of downloaded applications.
Recommendations For versions 10.2.8 through 10.3.4, consider disabling the "Show in Finder" button functionality until a patch is available. Restrict access to downloaded applications to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-0539

Affected Products

Safari