Lucene search

K
cveMitreCVE-2006-0391
HistoryMar 03, 2006 - 10:02 p.m.

CVE-2006-0391

2006-03-0322:02:00
mitre
web.nvd.nist.gov
34
cve-2006-0391
directory traversal
mac os x
bom framework
security vulnerability

CVSS2

1.7

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:L/Au:S/C:N/I:P/A:N

AI Score

6.7

Confidence

High

EPSS

0.001

Percentile

30.6%

Directory traversal vulnerability in the BOM framework in Mac OS X 10.x before 10.3.9 and 10.4 before 10.4.5 allows user-assisted attackers to overwrite or create arbitrary files via an archive that is handled by BOMArchiveHelper.

Affected configurations

Nvd
Node
applemac_os_xMatch10.3.1
OR
applemac_os_xMatch10.3.3
OR
applemac_os_xMatch10.3.4
OR
applemac_os_xMatch10.3.5
OR
applemac_os_xMatch10.3.6
OR
applemac_os_xMatch10.3.7
OR
applemac_os_xMatch10.3.8
OR
applemac_os_xMatch10.4
OR
applemac_os_xMatch10.4.1
OR
applemac_os_xMatch10.4.2
OR
applemac_os_xMatch10.4.3
OR
applemac_os_xMatch10.4.4
VendorProductVersionCPE
applemac_os_x10.3.1cpe:2.3:o:apple:mac_os_x:10.3.1:*:*:*:*:*:*:*
applemac_os_x10.3.3cpe:2.3:o:apple:mac_os_x:10.3.3:*:*:*:*:*:*:*
applemac_os_x10.3.4cpe:2.3:o:apple:mac_os_x:10.3.4:*:*:*:*:*:*:*
applemac_os_x10.3.5cpe:2.3:o:apple:mac_os_x:10.3.5:*:*:*:*:*:*:*
applemac_os_x10.3.6cpe:2.3:o:apple:mac_os_x:10.3.6:*:*:*:*:*:*:*
applemac_os_x10.3.7cpe:2.3:o:apple:mac_os_x:10.3.7:*:*:*:*:*:*:*
applemac_os_x10.3.8cpe:2.3:o:apple:mac_os_x:10.3.8:*:*:*:*:*:*:*
applemac_os_x10.4cpe:2.3:o:apple:mac_os_x:10.4:*:*:*:*:*:*:*
applemac_os_x10.4.1cpe:2.3:o:apple:mac_os_x:10.4.1:*:*:*:*:*:*:*
applemac_os_x10.4.2cpe:2.3:o:apple:mac_os_x:10.4.2:*:*:*:*:*:*:*
Rows per page:
1-10 of 121

CVSS2

1.7

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:L/Au:S/C:N/I:P/A:N

AI Score

6.7

Confidence

High

EPSS

0.001

Percentile

30.6%