Lucene search

K
cveMitreCVE-2009-0162
HistoryMay 13, 2009 - 3:30 p.m.

CVE-2009-0162

2009-05-1315:30:00
CWE-79
mitre
web.nvd.nist.gov
37
cve-2009-0162
xss
safari
mac os x
windows
remote attack

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

6.1

Confidence

High

EPSS

0.008

Percentile

81.2%

Cross-site scripting (XSS) vulnerability in Safari before 3.2.3, and 4 Public Beta, on Apple Mac OS X 10.5 before 10.5.7 and Windows allows remote attackers to inject arbitrary web script or HTML via a crafted feed: URL.

Affected configurations

Nvd
Node
applemac_os_xMatch10.5.0
OR
applemac_os_xMatch10.5.1
OR
applemac_os_xMatch10.5.2
OR
applemac_os_xMatch10.5.3
OR
applemac_os_xMatch10.5.4
OR
applemac_os_xMatch10.5.5
OR
applemac_os_xMatch10.5.6
OR
applemac_os_x_serverMatch10.5.0
OR
applemac_os_x_serverMatch10.5.1
OR
applemac_os_x_serverMatch10.5.2
OR
applemac_os_x_serverMatch10.5.3
OR
applemac_os_x_serverMatch10.5.4
OR
applemac_os_x_serverMatch10.5.6
OR
microsoftwindows_vista
OR
microsoftwindows_xp
AND
applesafariRange3.2.2
OR
applesafariMatch0.8
OR
applesafariMatch0.9
OR
applesafariMatch1.0
OR
applesafariMatch1.0beta
OR
applesafariMatch1.0beta2
OR
applesafariMatch1.0.0
OR
applesafariMatch1.0.0b1
OR
applesafariMatch1.0.0b2
OR
applesafariMatch1.0.1
OR
applesafariMatch1.0.2
OR
applesafariMatch1.0.3
OR
applesafariMatch1.0.385.8
OR
applesafariMatch1.0.385.8.1
OR
applesafariMatch1.1
OR
applesafariMatch1.1.0
OR
applesafariMatch1.1.1
OR
applesafariMatch1.2
OR
applesafariMatch1.2.0
OR
applesafariMatch1.2.1
OR
applesafariMatch1.2.2
OR
applesafariMatch1.2.3
OR
applesafariMatch1.2.4
OR
applesafariMatch1.2.5
OR
applesafariMatch1.3
OR
applesafariMatch1.3.0
OR
applesafariMatch1.3.1
OR
applesafariMatch1.3.2
OR
applesafariMatch1.3.2312.5
OR
applesafariMatch1.3.2312.6
OR
applesafariMatch2
OR
applesafariMatch2.0
OR
applesafariMatch2.0.0
OR
applesafariMatch2.0.1
OR
applesafariMatch2.0.2
OR
applesafariMatch2.0.3
OR
applesafariMatch2.0.3417.8
OR
applesafariMatch2.0.3417.9
OR
applesafariMatch2.0.3417.9.2
OR
applesafariMatch2.0.4
OR
applesafariMatch3
OR
applesafariMatch3.0
OR
applesafariMatch3.0.0
OR
applesafariMatch3.0.1
OR
applesafariMatch3.0.2
OR
applesafariMatch3.0.3
OR
applesafariMatch3.0.4
OR
applesafariMatch3.1
OR
applesafariMatch3.1.0
OR
applesafariMatch3.1.1
OR
applesafariMatch3.1.2
OR
applesafariMatch3.2
OR
applesafariMatch3.2.0
OR
applesafariMatch3.2.1
OR
applesafariMatch4.0beta
VendorProductVersionCPE
applemac_os_x10.5.0cpe:2.3:o:apple:mac_os_x:10.5.0:*:*:*:*:*:*:*
applemac_os_x10.5.1cpe:2.3:o:apple:mac_os_x:10.5.1:*:*:*:*:*:*:*
applemac_os_x10.5.2cpe:2.3:o:apple:mac_os_x:10.5.2:*:*:*:*:*:*:*
applemac_os_x10.5.3cpe:2.3:o:apple:mac_os_x:10.5.3:*:*:*:*:*:*:*
applemac_os_x10.5.4cpe:2.3:o:apple:mac_os_x:10.5.4:*:*:*:*:*:*:*
applemac_os_x10.5.5cpe:2.3:o:apple:mac_os_x:10.5.5:*:*:*:*:*:*:*
applemac_os_x10.5.6cpe:2.3:o:apple:mac_os_x:10.5.6:*:*:*:*:*:*:*
applemac_os_x_server10.5.0cpe:2.3:o:apple:mac_os_x_server:10.5.0:*:*:*:*:*:*:*
applemac_os_x_server10.5.1cpe:2.3:o:apple:mac_os_x_server:10.5.1:*:*:*:*:*:*:*
applemac_os_x_server10.5.2cpe:2.3:o:apple:mac_os_x_server:10.5.2:*:*:*:*:*:*:*
Rows per page:
1-10 of 701

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

6.1

Confidence

High

EPSS

0.008

Percentile

81.2%