Show filters
96 Total Results
Displaying 91-96 of 96
Sort by:
Attacker Value
Unknown

CVE-2012-0676

Disclosure Date: May 11, 2012 (last updated October 04, 2023)
WebKit in Apple Safari before 5.1.7 does not properly track state information during the processing of form input, which allows remote attackers to fill in form fields on the pages of arbitrary web sites via unspecified vectors.
0
Attacker Value
Unknown

CVE-2012-0647

Disclosure Date: March 12, 2012 (last updated October 04, 2023)
WebKit in Apple Safari before 5.1.4 does not properly handle redirects in conjunction with HTTP authentication, which might allow remote web servers to capture credentials by logging the Authorization HTTP header.
0
Attacker Value
Unknown

CVE-2012-0584

Disclosure Date: March 12, 2012 (last updated October 04, 2023)
The Internationalized Domain Name (IDN) feature in Apple Safari before 5.1.4 on Windows does not properly restrict the characters in URLs, which allows remote attackers to spoof a domain name via unspecified homoglyphs.
0
Attacker Value
Unknown

CVE-2012-0640

Disclosure Date: March 12, 2012 (last updated October 04, 2023)
WebKit in Apple Safari before 5.1.4 does not properly implement "From third parties and advertisers" cookie blocking, which makes it easier for remote web servers to track users via a cookie.
0
Attacker Value
Unknown

CVE-2011-3845

Disclosure Date: March 08, 2012 (last updated October 04, 2023)
Use-after-free vulnerability in Apple Safari 5.1.2, when a plug-in with a blocking function is installed, allows user-assisted remote attackers to execute arbitrary code via a crafted web page that is accessed during user interaction with the plug-in, leading to improper coordination between an API call and the plug-in unloading functionality, as demonstrated by the Adobe Flash and RealPlayer plug-ins.
0
Attacker Value
Unknown

CVE-2005-0976

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
AppleWebKit (WebCore and WebKit), as used in multiple products such as Safari 1.2 and OmniGroup OmniWeb 5.1, allows remote attackers to read arbitrary files via the XMLHttpRequest Javascript component, as demonstrated using automatically mounted disk images and file:// URLs.
0