Show filters
115 Total Results
Displaying 111-115 of 115
Sort by:
Attacker Value
Unknown
CVE-2010-1796
Disclosure Date: July 30, 2010 (last updated October 04, 2023)
The AutoFill feature in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4, allows remote attackers to obtain sensitive Address Book Card information via JavaScript code that forces keystroke events for input fields.
0
Attacker Value
Unknown
CVE-2010-1783
Disclosure Date: July 30, 2010 (last updated October 04, 2023)
WebKit in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4; and webkitgtk before 1.2.6; does not properly handle dynamic modification of a text node, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted HTML document.
0
Attacker Value
Unknown
CVE-2010-1940
Disclosure Date: May 14, 2010 (last updated October 04, 2023)
Apple Safari 4.0.5 on Windows sends the "Authorization: Basic" header appropriate for one web site to a different web site named in a Location header received from the first site, which allows remote web servers to obtain sensitive information by logging HTTP requests. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown
CVE-2010-1939
Disclosure Date: May 13, 2010 (last updated October 04, 2023)
Use-after-free vulnerability in Apple Safari 4.0.5 on Windows allows remote attackers to execute arbitrary code by using window.open to create a popup window for a crafted HTML document, and then calling the parent window's close method, which triggers improper handling of a deleted window object.
0
Attacker Value
Unknown
CVE-2010-1131
Disclosure Date: March 27, 2010 (last updated October 04, 2023)
JavaScriptCore.dll, as used in Apple Safari 4.0.5 on Windows XP SP3, allows remote attackers to cause a denial of service (application crash) via an HTML document composed of many successive occurrences of the <object> substring.
0