CVE-2007-2398 - CERT CVE
ID CVE-2007-2398
Sažetak Apple Safari 3.0.1 beta (522.12.12) on Windows allows remote attackers to modify the window title and address bar while filling the main window with arbitrary content by setting the location bar and using setTimeout() to create an event that modifies the window content, which could facilitate phishing attacks.
Reference
CVSS
Base: 7.1
Impact: 6.9
Exploitability:8.6
Pristup
VektorSloženostAutentikacija
NETWORK MEDIUM NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE COMPLETE NONE
CVSS vektor AV:N/AC:M/Au:N/C:N/I:C/A:N
Zadnje važnije ažuriranje 16-10-2018 - 16:43
Objavljeno 21-06-2007 - 10:30