Логотип exploitDog
bind:CVE-2015-3658
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-3658

Количество 4

Количество 4

ubuntu логотип

CVE-2015-3658

больше 10 лет назад

The Page Loading functionality in WebKit in Apple Safari before 6.2.7, 7.x before 7.1.7, and 8.x before 8.0.7, as used in Apple iOS before 8.4 and other products, does not properly consider redirects during decisions about sending an Origin header, which makes it easier for remote attackers to bypass CSRF protection mechanisms via a crafted web site.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2015-3658

больше 10 лет назад

The Page Loading functionality in WebKit in Apple Safari before 6.2.7, 7.x before 7.1.7, and 8.x before 8.0.7, as used in Apple iOS before 8.4 and other products, does not properly consider redirects during decisions about sending an Origin header, which makes it easier for remote attackers to bypass CSRF protection mechanisms via a crafted web site.

CVSS2: 6.8
EPSS: Низкий
github логотип

GHSA-7w75-mgjq-f5m7

больше 3 лет назад

The Page Loading functionality in WebKit in Apple Safari before 6.2.7, 7.x before 7.1.7, and 8.x before 8.0.7, as used in Apple iOS before 8.4 and other products, does not properly consider redirects during decisions about sending an Origin header, which makes it easier for remote attackers to bypass CSRF protection mechanisms via a crafted web site.

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:0915-1

почти 10 лет назад

Security update for webkitgtk

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2015-3658

The Page Loading functionality in WebKit in Apple Safari before 6.2.7, 7.x before 7.1.7, and 8.x before 8.0.7, as used in Apple iOS before 8.4 and other products, does not properly consider redirects during decisions about sending an Origin header, which makes it easier for remote attackers to bypass CSRF protection mechanisms via a crafted web site.

CVSS2: 6.8
0%
Низкий
больше 10 лет назад
nvd логотип
CVE-2015-3658

The Page Loading functionality in WebKit in Apple Safari before 6.2.7, 7.x before 7.1.7, and 8.x before 8.0.7, as used in Apple iOS before 8.4 and other products, does not properly consider redirects during decisions about sending an Origin header, which makes it easier for remote attackers to bypass CSRF protection mechanisms via a crafted web site.

CVSS2: 6.8
0%
Низкий
больше 10 лет назад
github логотип
GHSA-7w75-mgjq-f5m7

The Page Loading functionality in WebKit in Apple Safari before 6.2.7, 7.x before 7.1.7, and 8.x before 8.0.7, as used in Apple iOS before 8.4 and other products, does not properly consider redirects during decisions about sending an Origin header, which makes it easier for remote attackers to bypass CSRF protection mechanisms via a crafted web site.

0%
Низкий
больше 3 лет назад
suse-cvrf логотип
openSUSE-SU-2016:0915-1

Security update for webkitgtk

почти 10 лет назад

Уязвимостей на страницу