Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wmg4-hccw-9xwx

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 3.3

Описание

The "Clear History and Website Data" feature in Apple Safari before 9.1.1, as used in iOS before 9.3.2 and other products, mishandles the deletion of browsing history, which might allow local users to obtain sensitive information by leveraging read access to a Safari directory.

The "Clear History and Website Data" feature in Apple Safari before 9.1.1, as used in iOS before 9.3.2 and other products, mishandles the deletion of browsing history, which might allow local users to obtain sensitive information by leveraging read access to a Safari directory.

EPSS

Процентиль: 18%
0.00056
Низкий

3.3 Low

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 3.3
nvd
больше 9 лет назад

The "Clear History and Website Data" feature in Apple Safari before 9.1.1, as used in iOS before 9.3.2 and other products, mishandles the deletion of browsing history, which might allow local users to obtain sensitive information by leveraging read access to a Safari directory.

fstec
больше 9 лет назад

Уязвимость браузера Safari и операционной системы iOS, позволяющая нарушителю получить конфиденциальную информацию

EPSS

Процентиль: 18%
0.00056
Низкий

3.3 Low

CVSS3

Дефекты

CWE-200