NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
11880 | CVE-2010-0314 | Apple Safari allows remote attackers to discover a redirect"s target URL, for the session of a specific user of a web site, by placing the site"s URL in the HREF attribute of a stylesheet LINK element, and then reading the document.styleSheets[0].href property value. | 2 | 5 | Medium | 2017-01-18 | 2011-03-17 | View | |
3054 | CVE-2008-3170 | Apple Safari allows web sites to set cookies for country-specific top-level domains, such as co.uk and com.au, which could allow remote attackers to perform a session fixation attack and hijack a user"s HTTP session, aka "Cross-Site Cooking," a related issue to CVE-2004-0746, CVE-2004-0866, and CVE-2004-0867. | 2 | 6.8 | Medium | 2017-01-03 | 2011-03-07 | View | |
986 | CVE-2008-1024 | Apple Safari before 3.1.1, when running on Windows XP or Vista, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a file download with a crafted file name, which triggers memory corruption. | 2 | 6.8 | Medium | 2017-01-03 | 2009-03-18 | View | |
2227 | CVE-2008-2306 | Apple Safari before 3.1.2 on Windows does not properly interpret the URLACTION_SHELL_EXECUTE_HIGHRISK Internet Explorer zone setting, which allows remote attackers to bypass intended access restrictions, and force a client system to download and execute arbitrary files. | 2 | 9.3 | High | 2017-01-03 | 2011-03-07 | View | |
3512 | CVE-2008-3644 | Apple Safari before 3.2 does not properly prevent caching of form data for form fields that have autocomplete disabled, which allows local users to obtain sensitive information by reading the browser"s page cache. | 2 | 1.9 | Low | 2017-01-03 | 2012-10-30 | View |
Page 1343 of 17672, showing 5 records out of 88360 total, starting on record 6711, ending on 6715