CVE-2007-5863
Software Update in Apple Mac OS X 10.5.1 allows remote attackers to execute arbitrary commands via a man-in-the-middle (MITM) attack between the client and the server, using a modified distribution definition file with the "allow-external-scripts" option.
Date published : 2007-12-19
http://lists.apple.com/archives/security-announce/2007/Dec/msg00002.html
