cve/2007/CVE-2007-6165.md

18 lines
805 B
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2007-6165](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6165)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Mail in Apple Mac OS X Leopard (10.5.1) allows user-assisted remote attackers to execute arbitrary code via an AppleDouble attachment containing an apparently-safe file type and script in a resource fork, which does not warn the user that a separate program is going to be executed. NOTE: this is a regression error related to CVE-2006-0395.
### POC
#### Reference
- http://www.heise-security.co.uk/news/99257
#### Github
No PoCs found on GitHub currently.