{"api_version":"1","generated_at":"2026-07-23T04:21:43+00:00","cve":"CVE-2004-0489","urls":{"html":"https://cve.report/CVE-2004-0489","api":"https://cve.report/api/cve/CVE-2004-0489.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2004-0489","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2004-0489"},"summary":{"title":"CVE-2004-0489","description":"Argument injection vulnerability in the SSH URI handler for Safari on Mac OS 10.3.3 and earlier allows remote attackers to (1) execute arbitrary code via the ProxyCommand option or (2) conduct port forwarding via the -R option.","state":"PUBLISHED","assigner":"mitre","published_at":"2004-07-07 04:00:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["CWE-88","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.6","severity":"","vector":"AV:N/AC:H/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:C/I:C/A:C","baseScore":7.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://www.insecure.ws/article.php?story=200405222251133","name":"http://www.insecure.ws/article.php?story=200405222251133","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"],"title":":: insecure.ws ::","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://lists.grok.org.uk/pipermail/full-disclosure/2004-May/021871.html","name":"http://lists.grok.org.uk/pipermail/full-disclosure/2004-May/021871.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"[Full-Disclosure] SSH URI handler remote arbitrary code execution","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/16242","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/16242","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2004-0489","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2004-0489","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2004","cve_id":"489","vulnerable":"1","versionEndIncluding":"10.3.3","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"mac_os_x","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-08T00:17:15.129Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.insecure.ws/article.php?story=200405222251133"},{"name":"macos-ssh-code-execution(16242)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/16242"},{"name":"20040524 SSH URI handler remote arbitrary code execution","tags":["mailing-list","x_refsource_FULLDISC","x_transferred"],"url":"http://lists.grok.org.uk/pipermail/full-disclosure/2004-May/021871.html"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2004-05-24T00:00:00.000Z","descriptions":[{"lang":"en","value":"Argument injection vulnerability in the SSH URI handler for Safari on Mac OS 10.3.3 and earlier allows remote attackers to (1) execute arbitrary code via the ProxyCommand option or (2) conduct port forwarding via the -R option."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-10T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"tags":["x_refsource_MISC"],"url":"http://www.insecure.ws/article.php?story=200405222251133"},{"name":"macos-ssh-code-execution(16242)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/16242"},{"name":"20040524 SSH URI handler remote arbitrary code execution","tags":["mailing-list","x_refsource_FULLDISC"],"url":"http://lists.grok.org.uk/pipermail/full-disclosure/2004-May/021871.html"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2004-0489","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Argument injection vulnerability in the SSH URI handler for Safari on Mac OS 10.3.3 and earlier allows remote attackers to (1) execute arbitrary code via the ProxyCommand option or (2) conduct port forwarding via the -R option."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"http://www.insecure.ws/article.php?story=200405222251133","refsource":"MISC","url":"http://www.insecure.ws/article.php?story=200405222251133"},{"name":"macos-ssh-code-execution(16242)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/16242"},{"name":"20040524 SSH URI handler remote arbitrary code execution","refsource":"FULLDISC","url":"http://lists.grok.org.uk/pipermail/full-disclosure/2004-May/021871.html"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2004-0489","datePublished":"2004-05-28T04:00:00.000Z","dateReserved":"2004-05-25T00:00:00.000Z","dateUpdated":"2024-08-08T00:17:15.129Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2004-07-07 04:00:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["CWE-88","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:C/I:C/A:C","baseScore":7.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":4.9,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*","versionEndIncluding":"10.3.3","matchCriteriaId":"B09DFC89-C635-428B-A22A-928130AC3695"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2004","CveId":"489","Ordinal":"1","Title":"CVE-2004-0489","CVE":"CVE-2004-0489","Year":"2004"},"notes":[{"CveYear":"2004","CveId":"489","Ordinal":"1","NoteData":"Argument injection vulnerability in the SSH URI handler for Safari on Mac OS 10.3.3 and earlier allows remote attackers to (1) execute arbitrary code via the ProxyCommand option or (2) conduct port forwarding via the -R option.","Type":"Description","Title":"CVE-2004-0489"},{"CveYear":"2004","CveId":"489","Ordinal":"2","NoteData":"2004-05-28","Type":"Other","Title":"Published"},{"CveYear":"2004","CveId":"489","Ordinal":"3","NoteData":"2017-07-10","Type":"Other","Title":"Modified"}]}}}