Show filters
179 Total Results
Displaying 91-100 of 179
Sort by:
Attacker Value
Unknown

CVE-2011-3242

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
The Private Browsing feature in Apple Safari before 5.1.1 on Mac OS X does not properly recognize the Always value of the Block Cookies setting, which makes it easier for remote web servers to track users via a cookie.
0
Attacker Value
Unknown

CVE-2011-3243

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in WebKit, as used in Apple iOS before 5 and Safari before 5.1.1, allows remote attackers to inject arbitrary web script or HTML via vectors involving inactive DOM windows.
0
Attacker Value
Unknown

CVE-2011-3231

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
The SSL implementation in Apple Safari before 5.1.1 on Mac OS X before 10.7 accesses uninitialized memory during the processing of X.509 certificates, which allows remote web servers to execute arbitrary code via a crafted certificate.
0
Attacker Value
Unknown

CVE-2011-1344

Disclosure Date: March 10, 2011 (last updated October 04, 2023)
Use-after-free vulnerability in WebKit, as used in Apple Safari before 5.0.5; iOS before 4.3.2 for iPhone, iPod, and iPad; iOS before 4.2.7 for iPhone 4 (CDMA); and possibly other products allows remote attackers to execute arbitrary code by adding children to a WBR tag and then removing the tag, related to text nodes, as demonstrated by Chaouki Bekrar during a Pwn2Own competition at CanSecWest 2011.
0
Attacker Value
Unknown

CVE-2010-1806

Disclosure Date: September 10, 2010 (last updated October 04, 2023)
Use-after-free vulnerability in Apple Safari 4.x before 4.1.2 and 5.x before 5.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via run-in styling in an element, related to object pointers.
0
Attacker Value
Unknown

CVE-2010-1807

Disclosure Date: September 10, 2010 (last updated October 04, 2023)
WebKit in Apple Safari 4.x before 4.1.2 and 5.x before 5.0.2; Android before 2.2; and webkitgtk before 1.2.6; does not properly validate floating-point data, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted HTML document, related to non-standard NaN representation.
0
Attacker Value
Unknown

CVE-2010-1805

Disclosure Date: September 10, 2010 (last updated October 04, 2023)
Untrusted search path vulnerability in Apple Safari 4.x before 4.1.2 and 5.x before 5.0.2 on Windows allows local users to gain privileges via a Trojan horse explorer.exe (aka Windows Explorer) program in a directory containing a file that had been downloaded by Safari.
0
Attacker Value
Unknown

CVE-2010-1786

Disclosure Date: July 30, 2010 (last updated October 04, 2023)
Use-after-free vulnerability in WebKit in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4; and webkitgtk before 1.2.6; allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a foreignObject element in an SVG document.
0
Attacker Value
Unknown

CVE-2010-1789

Disclosure Date: July 30, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in WebKit in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a JavaScript string object.
0
Attacker Value
Unknown

CVE-2010-1782

Disclosure Date: July 30, 2010 (last updated October 04, 2023)
WebKit in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4; and webkitgtk before 1.2.6; allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to the rendering of an inline element.
0