Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2009-1688

Опубликовано: 10 июн. 2009
Источник: debian
EPSS Низкий

Описание

Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML via vectors related to determining a security context through an approach that is not the "HTML 5 standard method."

Пакеты

ПакетСтатусВерсия исправленияРелизТип
webkitfixed1.1.12-1package
webkitnot-affectedlennypackage
kdelibsnot-affectedpackage
kde4libsnot-affectedpackage
qt4-x11fixed4.4.3-1package

Примечания

  • QT4 might be fixed earlier, but only Lenny version was checked

  • http://trac.webkit.org/changeset/32791

EPSS

Процентиль: 71%
0.00644
Низкий

Связанные уязвимости

ubuntu
почти 17 лет назад

Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML via vectors related to determining a security context through an approach that is not the "HTML 5 standard method."

nvd
почти 17 лет назад

Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML via vectors related to determining a security context through an approach that is not the "HTML 5 standard method."

github
почти 4 года назад

Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML via vectors related to determining a security context through an approach that is not the "HTML 5 standard method."

EPSS

Процентиль: 71%
0.00644
Низкий