Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h749-7h9c-cq2g

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

WebKit in Apple Safari before 5.0.4, when the Web Inspector is used, does not properly handle the window.console._inspectorCommandLineAPI property, which allows user-assisted remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via a crafted web site.

WebKit in Apple Safari before 5.0.4, when the Web Inspector is used, does not properly handle the window.console._inspectorCommandLineAPI property, which allows user-assisted remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via a crafted web site.

EPSS

Процентиль: 58%
0.00362
Низкий

Дефекты

CWE-79

Связанные уязвимости

ubuntu
почти 15 лет назад

WebKit in Apple Safari before 5.0.4, when the Web Inspector is used, does not properly handle the window.console._inspectorCommandLineAPI property, which allows user-assisted remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via a crafted web site.

nvd
почти 15 лет назад

WebKit in Apple Safari before 5.0.4, when the Web Inspector is used, does not properly handle the window.console._inspectorCommandLineAPI property, which allows user-assisted remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via a crafted web site.

EPSS

Процентиль: 58%
0.00362
Низкий

Дефекты

CWE-79