Remote File Reading Vulnerability in Apple Keynote by Apple
CVE-2005-1408

Currently unrated

Key Information:

Vendor
Apple
Status
Vendor
CVE Published:
26 May 2005

Summary

Apple Keynote versions 2.0 and 2.0.1 are affected by a vulnerability that allows remote attackers to exploit the keynote: URI handler, enabling them to read arbitrary files from a target system by delivering a specially crafted Keynote presentation. This flaw poses significant risks, as it can lead to unauthorized information disclosure without user interaction. It is crucial for users to ensure they are using secure versions of the software and to exercise caution when opening presentations from untrusted sources.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.