PT-2005-3422 · Apple · Macos X
Atsushi Matsuo
+1
·
Published
2005-08-19
·
Updated
2008-09-05
·
CVE-2005-2523
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Mac OS X versions 10.4 through 10.4.2
Description
The issue concerns multiple cross-site scripting (XSS) vulnerabilities in the Weblog Server. These vulnerabilities allow remote attackers to inject arbitrary web script or HTML via unknown vectors.
Recommendations
For Mac OS X versions 10.4 through 10.4.2, update to a version outside of the affected range to mitigate the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Macos X