NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66104 | CVE-2005-0341 | Apple Safari 1.2.4 does not obey the Content-type field in the HTTP header and renders text as HTML, which allows remote attackers to inject arbitrary web script or HTML and perform cross-site scripting (XSS) attacks. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
68283 | CVE-2005-2594 | Apple Safari 1.3 (132) on Mac OS X 1.3.9 allows remote attackers to cause a denial of service (crash) via certain Javascript, possibly involving a function that defines a handler for itself within the function body. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
58587 | CVE-2007-6592 | Apple Safari 2, when a user accepts an SSL server certificate on the basis of the CN domain name in the DN field, regards the certificate as also accepted for all domain names in subjectAltName:dNSName fields, which makes it easier for remote attackers to trick a user into accepting an invalid certificate for a spoofed web site. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
70267 | CVE-2005-4678 | Apple Safari 2.0.2 (aka 416.12) allows remote attackers to spoof the URL in the status bar via the title in an image in a link to a trusted site within a form to the malicious site. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
69535 | CVE-2005-3897 | Apple Safari 2.0.2 allows remote attackers to cause a denial of service (system slowdown) via a Javascript BODY onload event that calls the window function. | 2 | 7.8 | High | 2017-01-03 | 2016-10-17 | View |
Page 1338 of 17672, showing 5 records out of 88360 total, starting on record 6686, ending on 6690