Описание
Cross-site scripting (XSS) vulnerability in Web Inspector in WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to inject arbitrary web script or HTML, and read local files, via vectors related to script execution with incorrect privileges.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | not-affected | no webkit |
| devel | not-affected | 4.5.2-0ubuntu5 |
| hardy | not-affected | no webkit |
| intrepid | ignored | end of life, was needed |
| jaunty | not-affected | 4.5.0-0ubuntu4.2 |
| karmic | not-affected | 4.5.2-0ubuntu5 |
| lucid | not-affected | 4.5.2-0ubuntu5 |
| maverick | not-affected | 4.5.2-0ubuntu5 |
| natty | not-affected | 4.5.2-0ubuntu5 |
| upstream | needs-triage |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | DNE | |
| devel | not-affected | 1.1.12-1ubuntu1 |
| hardy | ignored | end of life |
| intrepid | not-affected | 1.0.1-2ubuntu0.1 |
| jaunty | not-affected | 1.0.1-4 |
| karmic | not-affected | 1.1.12-1ubuntu1 |
| lucid | not-affected | 1.1.12-1ubuntu1 |
| maverick | not-affected | 1.1.12-1ubuntu1 |
| natty | not-affected | 1.1.12-1ubuntu1 |
| upstream | needs-triage |
Показывать по
Ссылки на источники
EPSS
4.3 Medium
CVSS2
Связанные уязвимости
Cross-site scripting (XSS) vulnerability in Web Inspector in WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to inject arbitrary web script or HTML, and read local files, via vectors related to script execution with incorrect privileges.
Cross-site scripting (XSS) vulnerability in Web Inspector in WebKit in ...
Cross-site scripting (XSS) vulnerability in Web Inspector in WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to inject arbitrary web script or HTML, and read local files, via vectors related to script execution with incorrect privileges.
EPSS
4.3 Medium
CVSS2