Логотип exploitDog
bind:CVE-2015-3752
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-3752

Количество 5

Количество 5

ubuntu логотип

CVE-2015-3752

больше 10 лет назад

The Content Security Policy implementation in WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, does not properly restrict cookie transmission for report requests, which allows remote attackers to obtain sensitive information via vectors involving (1) a cross-origin request or (2) a private-browsing request.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2015-3752

больше 10 лет назад

The Content Security Policy implementation in WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, does not properly restrict cookie transmission for report requests, which allows remote attackers to obtain sensitive information via vectors involving (1) a cross-origin request or (2) a private-browsing request.

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-fgcj-8hc4-j3gh

больше 3 лет назад

The Content Security Policy implementation in WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, does not properly restrict cookie transmission for report requests, which allows remote attackers to obtain sensitive information via vectors involving (1) a cross-origin request or (2) a private-browsing request.

EPSS: Низкий
fstec логотип

BDU:2015-11218

больше 10 лет назад

Уязвимость браузера Safari и операционной системы iOS, позволяющая нарушителю получить доступ к защищаемой информации

CVSS2: 5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:0915-1

почти 10 лет назад

Security update for webkitgtk

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2015-3752

The Content Security Policy implementation in WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, does not properly restrict cookie transmission for report requests, which allows remote attackers to obtain sensitive information via vectors involving (1) a cross-origin request or (2) a private-browsing request.

CVSS2: 5
1%
Низкий
больше 10 лет назад
nvd логотип
CVE-2015-3752

The Content Security Policy implementation in WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, does not properly restrict cookie transmission for report requests, which allows remote attackers to obtain sensitive information via vectors involving (1) a cross-origin request or (2) a private-browsing request.

CVSS2: 5
1%
Низкий
больше 10 лет назад
github логотип
GHSA-fgcj-8hc4-j3gh

The Content Security Policy implementation in WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, does not properly restrict cookie transmission for report requests, which allows remote attackers to obtain sensitive information via vectors involving (1) a cross-origin request or (2) a private-browsing request.

1%
Низкий
больше 3 лет назад
fstec логотип
BDU:2015-11218

Уязвимость браузера Safari и операционной системы iOS, позволяющая нарушителю получить доступ к защищаемой информации

CVSS2: 5
1%
Низкий
больше 10 лет назад
suse-cvrf логотип
openSUSE-SU-2016:0915-1

Security update for webkitgtk

почти 10 лет назад

Уязвимостей на страницу