Input validation error in macOS and macOS Server - CVE-2013-0973
Published: March 15, 2013 / Updated: August 11, 2020
macOS
macOS Server
Detailed vulnerability description
The vulnerability allows a remote non-authenticated attacker to read and manipulate data.
Software Update in Apple Mac OS X through 10.7.5 does not prevent plugin loading within the marketing-text WebView, which allows man-in-the-middle attackers to execute plugin code by modifying the client-server data stream.