Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r4c3-86wx-hvpp

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

WebKit, as used in Apple iOS before 8.3 and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, does not properly handle the userinfo field in FTP URLs, which allows remote attackers to trigger incorrect resource access via unspecified vectors.

WebKit, as used in Apple iOS before 8.3 and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, does not properly handle the userinfo field in FTP URLs, which allows remote attackers to trigger incorrect resource access via unspecified vectors.

EPSS

Процентиль: 98%
0.65446
Средний

Дефекты

CWE-20

Связанные уязвимости

ubuntu
почти 11 лет назад

WebKit, as used in Apple iOS before 8.3 and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, does not properly handle the userinfo field in FTP URLs, which allows remote attackers to trigger incorrect resource access via unspecified vectors.

nvd
почти 11 лет назад

WebKit, as used in Apple iOS before 8.3 and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, does not properly handle the userinfo field in FTP URLs, which allows remote attackers to trigger incorrect resource access via unspecified vectors.

EPSS

Процентиль: 98%
0.65446
Средний

Дефекты

CWE-20