Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2010-1384

Опубликовано: 11 июн. 2010
Источник: debian
EPSS Низкий

Описание

Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, does not provide a warning about a (1) http or (2) https URL that contains a username and password, which makes it easier for remote attackers to conduct phishing attacks via a crafted URL.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
chromium-browserunfixedpackage

Примечания

  • This is based on various misconceptions surrounding "phishing" The only supported browser security model

  • surrounding URLs is the accurate post-link-click indication of the final target URL in the URL bar.

EPSS

Процентиль: 79%
0.01276
Низкий

Связанные уязвимости

ubuntu
больше 15 лет назад

Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, does not provide a warning about a (1) http or (2) https URL that contains a username and password, which makes it easier for remote attackers to conduct phishing attacks via a crafted URL.

nvd
больше 15 лет назад

Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, does not provide a warning about a (1) http or (2) https URL that contains a username and password, which makes it easier for remote attackers to conduct phishing attacks via a crafted URL.

github
больше 3 лет назад

Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, does not provide a warning about a (1) http or (2) https URL that contains a username and password, which makes it easier for remote attackers to conduct phishing attacks via a crafted URL.

EPSS

Процентиль: 79%
0.01276
Низкий