First published: Wed Dec 19 2007(Updated: )
Software Update in Apple Mac OS X 10.5.1 allows remote attackers to execute arbitrary commands via a man-in-the-middle (MITM) attack between the client and the server, using a modified distribution definition file with the "allow-external-scripts" option.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS and macOS | =10.5.1 | |
Apple macOS Server | =10.5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-5863 is considered a critical vulnerability due to its potential for remote code execution.
To fix CVE-2007-5863, update to a patched version of Apple Mac OS X or Mac OS X Server that addresses this vulnerability.
CVE-2007-5863 affects Apple Mac OS X 10.5.1 and Mac OS X Server 10.5.1.
The implications of CVE-2007-5863 include the possibility for attackers to execute arbitrary commands through a man-in-the-middle attack.
While CVE-2007-5863 is an old vulnerability, systems using the affected version remain at risk if not updated.