Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4cqh-vr3j-xc4q

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Safari RSS in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 does not block Java applets in an RSS feed, which allows remote attackers to obtain sensitive information via a feed: URL containing an applet that performs DOM modifications.

Safari RSS in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 does not block Java applets in an RSS feed, which allows remote attackers to obtain sensitive information via a feed: URL containing an applet that performs DOM modifications.

EPSS

Процентиль: 43%
0.00209
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
около 15 лет назад

Safari RSS in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 does not block Java applets in an RSS feed, which allows remote attackers to obtain sensitive information via a feed: URL containing an applet that performs DOM modifications.

EPSS

Процентиль: 43%
0.00209
Низкий

Дефекты

CWE-200