Show filters
195 Total Results
Displaying 191-195 of 195
Sort by:
Attacker Value
Unknown

CVE-2009-2195

Disclosure Date: August 12, 2009 (last updated October 04, 2023)
Buffer overflow in WebKit in Apple Safari before 4.0.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted floating-point numbers.
0
Attacker Value
Unknown

CVE-2009-2200

Disclosure Date: August 12, 2009 (last updated October 04, 2023)
WebKit in Apple Safari before 4.0.3 does not properly restrict the URL scheme of the pluginspage attribute of an EMBED element, which allows user-assisted remote attackers to launch arbitrary file: URLs and obtain sensitive information via a crafted HTML document.
0
Attacker Value
Unknown

CVE-2009-2199

Disclosure Date: August 12, 2009 (last updated October 04, 2023)
Incomplete blacklist vulnerability in WebKit in Apple Safari before 4.0.3, as used on iPhone OS before 3.1, iPhone OS before 3.1.1 for iPod touch, and other platforms, allows remote attackers to spoof domain names in URLs, and possibly conduct phishing attacks, via unspecified homoglyphs.
0
Attacker Value
Unknown

CVE-2009-2196

Disclosure Date: August 12, 2009 (last updated October 04, 2023)
Unspecified vulnerability in Apple Safari 4 before 4.0.3 allows remote web servers to place an arbitrary web site in the Top Sites view, and possibly conduct phishing attacks, via unknown vectors.
0
Attacker Value
Unknown

CVE-2009-2419

Disclosure Date: July 09, 2009 (last updated October 04, 2023)
Use-after-free vulnerability in the servePendingRequests function in WebCore in WebKit in Apple Safari 4.0 and 4.0.1 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted HTML document that references a zero-length .js file and the JavaScript reload function. NOTE: some of these details are obtained from third party information.
0