First published: Fri May 28 2004(Updated: )
Argument injection vulnerability in the SSH URI handler for Safari on Mac OS 10.3.3 and earlier allows remote attackers to (1) execute arbitrary code via the ProxyCommand option or (2) conduct port forwarding via the -R option.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | <=10.3.3 | |
macOS Yosemite | =10.3.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-0489 is considered a high severity vulnerability due to its potential for remote code execution.
To fix CVE-2004-0489, users should upgrade to versions of Mac OS X newer than 10.3.3.
CVE-2004-0489 can be exploited to execute arbitrary code or conduct port forwarding through the SSH URI handler.
CVE-2004-0489 affects users running Mac OS X 10.3.3 and earlier versions.
While CVE-2004-0489 specifically targets outdated systems, it highlights risks associated with outdated software and SSH configurations.