Логотип exploitDog
bind:CVE-2009-1697
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2009-1697

Количество 4

Количество 4

ubuntu логотип

CVE-2009-1697

больше 16 лет назад

CRLF injection vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject HTTP headers and bypass the Same Origin Policy via a crafted HTML document, related to cross-site scripting (XSS) attacks that depend on communication with arbitrary web sites on the same server through use of XMLHttpRequest without a Host header.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2009-1697

больше 16 лет назад

CRLF injection vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject HTTP headers and bypass the Same Origin Policy via a crafted HTML document, related to cross-site scripting (XSS) attacks that depend on communication with arbitrary web sites on the same server through use of XMLHttpRequest without a Host header.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2009-1697

больше 16 лет назад

CRLF injection vulnerability in WebKit in Apple Safari before 4.0, iPh ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-wpgx-8qqv-qrcq

почти 4 года назад

CRLF injection vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject HTTP headers and bypass the Same Origin Policy via a crafted HTML document, related to cross-site scripting (XSS) attacks that depend on communication with arbitrary web sites on the same server through use of XMLHttpRequest without a Host header.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2009-1697

CRLF injection vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject HTTP headers and bypass the Same Origin Policy via a crafted HTML document, related to cross-site scripting (XSS) attacks that depend on communication with arbitrary web sites on the same server through use of XMLHttpRequest without a Host header.

CVSS2: 4.3
0%
Низкий
больше 16 лет назад
nvd логотип
CVE-2009-1697

CRLF injection vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject HTTP headers and bypass the Same Origin Policy via a crafted HTML document, related to cross-site scripting (XSS) attacks that depend on communication with arbitrary web sites on the same server through use of XMLHttpRequest without a Host header.

CVSS2: 4.3
0%
Низкий
больше 16 лет назад
debian логотип
CVE-2009-1697

CRLF injection vulnerability in WebKit in Apple Safari before 4.0, iPh ...

CVSS2: 4.3
0%
Низкий
больше 16 лет назад
github логотип
GHSA-wpgx-8qqv-qrcq

CRLF injection vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject HTTP headers and bypass the Same Origin Policy via a crafted HTML document, related to cross-site scripting (XSS) attacks that depend on communication with arbitrary web sites on the same server through use of XMLHttpRequest without a Host header.

0%
Низкий
почти 4 года назад

Уязвимостей на страницу