265981
|
- |
|
apple
|
safari
|
Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary …
|
CWE-79
Cross-site Scripting
|
CVE-2009-1689
|
2011-02-17 15:43 |
2009-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265982
|
- |
|
apple
|
safari
|
Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary …
|
CWE-79
Cross-site Scripting
|
CVE-2009-1691
|
2011-02-17 15:43 |
2009-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265983
|
- |
|
apple
|
safari
|
WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to read images from arbitrary web sites via a CANVAS element wit…
|
NVD-CWE-Other
|
CVE-2009-1693
|
2011-02-17 15:43 |
2009-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265984
|
- |
|
apple
|
safari
|
WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle redirects, which allows remote attackers to read images from ar…
|
NVD-CWE-Other
|
CVE-2009-1694
|
2011-02-17 15:43 |
2009-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265985
|
- |
|
apple
|
safari
|
Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary …
|
CWE-79
Cross-site Scripting
|
CVE-2009-1695
|
2011-02-17 15:43 |
2009-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265986
|
- |
|
apple
|
safari
|
WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 uses predictable random numbers in JavaScript applications, which makes it easier for re…
|
CWE-310
Cryptographic Issues
|
CVE-2009-1696
|
2011-02-17 15:43 |
2009-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265987
|
- |
|
apple
|
safari
|
CRLF injection vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject HTTP headers and bypas…
|
CWE-20
Improper Input Validation
|
CVE-2009-1697
|
2011-02-17 15:43 |
2009-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265988
|
- |
|
apple
|
safari
|
WebKit in Apple Safari before 4.0 does not prevent references to file: URLs within (1) audio and (2) video elements, which allows remote attackers to determine the existence of arbitrary files via a …
|
CWE-200
Information Exposure
|
CVE-2009-1703
|
2011-02-17 15:43 |
2009-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265989
|
- |
|
apple
|
safari
|
Cross-site scripting (XSS) vulnerability in Web Inspector in WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to inject arbitrary web script or HTML, and read local files, via …
|
CWE-79
Cross-site Scripting
|
CVE-2009-1715
|
2011-02-17 15:43 |
2009-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265990
|
- |
|
apple
|
safari
|
WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to obtain sensitive information via vectors involving drag events and the dragging of content over a crafted web page.
|
CWE-200
Information Exposure
|
CVE-2009-1718
|
2011-02-17 15:43 |
2009-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|