6.8
CVSSv2

CVE-2009-1727

Published: 06/08/2009 Updated: 17/08/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Incomplete blacklist vulnerability in CoreTypes in Apple Mac OS X 10.5 prior to 10.5.8 makes it easier for user-assisted remote malicious users to execute arbitrary JavaScript via a web page that offers a download with a Content-Type value that is not on the list of possibly unsafe content types for Safari.

Vulnerable Product Search on Vulmon Subscribe to Product

apple mac os x 10.5.2

apple mac os x 10.5.3

apple mac os x server 10.5.2

apple mac os x server 10.5.3

apple mac os x 10.5.4

apple mac os x 10.5.5

apple mac os x server 10.5.4

apple mac os x server 10.5.5

apple mac os x 10.5.0

apple mac os x 10.5.1

apple mac os x server 10.5.0

apple mac os x server 10.5.1

apple mac os x 10.5.7

apple mac os x 10.5.6

apple mac os x 10.5

apple mac os x server 10.5

apple mac os x server 10.5.6

apple mac os x server 10.5.7