vendor:
Safari
by:
SecurityFocus
7.5
CVSS
HIGH
Multiple Input-Validation Vulnerabilities
20
CWE
Product Name: Safari
Affected Version From: Safari 3.2.2
Affected Version To: Safari 3.2.3
Patch Exists: YES
Related CWE: N/A
CPE: apple:safari
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2009
Apple Safari Multiple Input-Validation Vulnerabilities
An attacker can exploit these issues by enticing an unsuspecting victim to visit a malicious website. Successfully exploiting these issues will allow the attacker to execute arbitrary JavaScript code in the local security zone. This may allow the attacker to obtain sensitive information that can aid in further attacks; other consequences may also occur.
Mitigation:
Upgrade to the latest version of Safari