CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
27099 | CVE-2007-3742 | Candidate | WebKit in Apple Safari 3 Beta before Update 3.0.3, and iPhone before 1.0.1, does not properly handle the interaction between International Domain Name (IDN) support and Unicode fonts, which allows remote attackers to create a URL containing "look-alike characters" (homographs) and possibly perform phishing attacks. | Assigned (20070712) | None (candidate not yet proposed) | View | |
25765 | CVE-2007-2408 | Candidate | WebKit in Apple Safari 3 Beta before Update 3.0.3 does not properly recognize an unchecked "Enable Java" setting, which allows remote attackers to execute Java applets via a crafted web page. | Assigned (20070430) | None (candidate not yet proposed) | View | |
20516 | CVE-2006-4412 | Candidate | WebKit in Apple Mac OS X 10.3.x through 10.3.9 and 10.4 through 10.4.8 allows remote attackers to execute arbitrary code via a crafted HTML file, which accesses previously deallocated objects. | Assigned (20060828) | None (candidate not yet proposed) | View | |
25756 | CVE-2007-2399 | Candidate | WebKit in Apple Mac OS X 10.3.9, 10.4.9 and later, and iPhone before 1.0.1 performs an "invalid type conversion", which allows remote attackers to execute arbitrary code via unspecified frame sets that trigger memory corruption. | Assigned (20070430) | None (candidate not yet proposed) | View | |
19609 | CVE-2006-3505 | Candidate | WebKit in Apple Mac OS X 10.3.9 and 10.4.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML document that causes WebKit to access an object that has already been deallocated. | Assigned (20060710) | None (candidate not yet proposed) | View |
Page 366 of 20943, showing 5 records out of 104715 total, starting on record 1826, ending on 1830