NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
50064 | CVE-2009-2842 | Apple Safari before 4.0.4 does not properly implement certain (1) Open Image and (2) Open Link menu options, which allows remote attackers to read local HTML files via a crafted web site. | 2 | 4.3 | Medium | 2017-01-07 | 2011-01-20 | View | |
48951 | CVE-2009-1682 | Apple Safari before 4.0 does not properly check for revoked Extended Validation (EV) certificates, which makes it easier for remote attackers to trick a user into accepting an invalid certificate. | 2 | 4.3 | Medium | 2017-01-07 | 2009-06-19 | View | |
48977 | CVE-2009-1708 | Apple Safari before 4.0 does not prevent calls to the open-help-anchor URL handler by web sites, which allows remote attackers to open arbitrary local help files, and execute arbitrary code or obtain sensitive information, via a crafted call. | 2 | 9.3 | High | 2017-01-07 | 2009-06-19 | View | |
49320 | CVE-2009-2058 | Apple Safari before 3.2.2 uses the HTTP Host header to determine the context of a document provided in a (1) 4xx or (2) 5xx CONNECT response from a proxy server, which allows man-in-the-middle attackers to execute arbitrary web script by modifying this CONNECT response, aka an "SSL tampering" attack. | 2 | 6.8 | Medium | 2017-01-07 | 2009-06-23 | View | |
49324 | CVE-2009-2062 | Apple Safari before 3.2.2 processes a 3xx HTTP CONNECT response before a successful SSL handshake, which allows man-in-the-middle attackers to execute arbitrary web script, in an https site"s context, by modifying this CONNECT response to specify a 302 redirect to an arbitrary https web site. | 2 | 6.8 | Medium | 2017-01-07 | 2009-06-23 | View |
Page 16329 of 17672, showing 5 records out of 88360 total, starting on record 81641, ending on 81645