CVE
- Id
- 44002
- CVE No.
- CVE-2010-1418
- Status
- Candidate
- Description
- Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows remote attackers to inject arbitrary web script or HTML via a FRAME element with a SRC attribute composed of a javascript: sequence preceded by spaces.
- Phase
- Assigned (20100415)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
480150 | 44002 | CVE-2010-1418 | CONFIRM:http://support.apple.com/kb/HT4196 | View |
480151 | 44002 | CVE-2010-1418 | CONFIRM:http://support.apple.com/kb/HT4220 | View |
480152 | 44002 | CVE-2010-1418 | CONFIRM:http://support.apple.com/kb/HT4225 | View |
480153 | 44002 | CVE-2010-1418 | CONFIRM:http://support.apple.com/kb/HT4456 | View |
480154 | 44002 | CVE-2010-1418 | APPLE:APPLE-SA-2010-06-07-1 | View |
480155 | 44002 | CVE-2010-1418 | URL:http://lists.apple.com/archives/security-announce/2010/Jun/msg00000.html | View |
480156 | 44002 | CVE-2010-1418 | APPLE:APPLE-SA-2010-06-16-1 | View |
480157 | 44002 | CVE-2010-1418 | URL:http://lists.apple.com/archives/security-announce/2010//Jun/msg00002.html | View |
480158 | 44002 | CVE-2010-1418 | APPLE:APPLE-SA-2010-06-21-1 | View |
480159 | 44002 | CVE-2010-1418 | URL:http://lists.apple.com/archives/security-announce/2010/Jun/msg00003.html | View |
480160 | 44002 | CVE-2010-1418 | APPLE:APPLE-SA-2010-11-22-1 | View |
480161 | 44002 | CVE-2010-1418 | URL:http://lists.apple.com/archives/security-announce/2010//Nov/msg00003.html | View |
480162 | 44002 | CVE-2010-1418 | MANDRIVA:MDVSA-2011:039 | View |
480163 | 44002 | CVE-2010-1418 | URL:http://www.mandriva.com/security/advisories?name=MDVSA-2011:039 | View |
480164 | 44002 | CVE-2010-1418 | SUSE:SUSE-SR:2011:002 | View |
480165 | 44002 | CVE-2010-1418 | URL:http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html | View |
480166 | 44002 | CVE-2010-1418 | UBUNTU:USN-1006-1 | View |
480167 | 44002 | CVE-2010-1418 | URL:http://www.ubuntu.com/usn/USN-1006-1 | View |
480168 | 44002 | CVE-2010-1418 | BID:40620 | View |
480169 | 44002 | CVE-2010-1418 | URL:http://www.securityfocus.com/bid/40620 | View |
480170 | 44002 | CVE-2010-1418 | OVAL:oval:org.mitre.oval:def:6871 | View |
480171 | 44002 | CVE-2010-1418 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6871 | View |
480172 | 44002 | CVE-2010-1418 | SECTRACK:1024067 | View |
480173 | 44002 | CVE-2010-1418 | URL:http://securitytracker.com/id?1024067 | View |
480174 | 44002 | CVE-2010-1418 | SECUNIA:40105 | View |
480175 | 44002 | CVE-2010-1418 | URL:http://secunia.com/advisories/40105 | View |
480176 | 44002 | CVE-2010-1418 | SECUNIA:40196 | View |
480177 | 44002 | CVE-2010-1418 | URL:http://secunia.com/advisories/40196 | View |
480178 | 44002 | CVE-2010-1418 | SECUNIA:41856 | View |
480179 | 44002 | CVE-2010-1418 | URL:http://secunia.com/advisories/41856 | View |
480180 | 44002 | CVE-2010-1418 | SECUNIA:42314 | View |
480181 | 44002 | CVE-2010-1418 | URL:http://secunia.com/advisories/42314 | View |
480182 | 44002 | CVE-2010-1418 | SECUNIA:43068 | View |
480183 | 44002 | CVE-2010-1418 | URL:http://secunia.com/advisories/43068 | View |
480184 | 44002 | CVE-2010-1418 | VUPEN:ADV-2010-1373 | View |
480185 | 44002 | CVE-2010-1418 | URL:http://www.vupen.com/english/advisories/2010/1373 | View |
480186 | 44002 | CVE-2010-1418 | VUPEN:ADV-2010-1512 | View |
480187 | 44002 | CVE-2010-1418 | URL:http://www.vupen.com/english/advisories/2010/1512 | View |
480188 | 44002 | CVE-2010-1418 | VUPEN:ADV-2010-2722 | View |
480189 | 44002 | CVE-2010-1418 | URL:http://www.vupen.com/english/advisories/2010/2722 | View |
480190 | 44002 | CVE-2010-1418 | VUPEN:ADV-2011-0212 | View |
480191 | 44002 | CVE-2010-1418 | URL:http://www.vupen.com/english/advisories/2011/0212 | View |
480192 | 44002 | CVE-2010-1418 | VUPEN:ADV-2011-0552 | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
35770 | JVNDB-2010-001550 | Apple Safari の WebKit における任意のキー操作を強制される脆弱性 | Apple Safari の WebKit には、キー操作によるイベントの処理が行われている間、キーボードの操作対象の変更を適切に処理しないため、任意のキー操作を強制される脆弱性が存在します。 | CVE-2010-1422 | 44002 | 4.3 | http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001550.html | View |