Lucene search

K
cveAppleCVE-2014-1369
HistoryJul 01, 2014 - 10:17 a.m.

CVE-2014-1369

2014-07-0110:17:27
CWE-20
apple
web.nvd.nist.gov
28
cve-2014-1369
webkit
apple safari
remote code execution
vulnerability

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

AI Score

6.2

Confidence

Low

EPSS

0.003

Percentile

68.2%

WebKit in Apple Safari before 6.1.5 and 7.x before 7.0.5 allows user-assisted remote attackers to access file: URLs by leveraging a URL drag operation that originates at a crafted web site.

Affected configurations

Nvd
Node
applesafariRange6.1.4
OR
applesafariMatch6.0
OR
applesafariMatch6.0.1
OR
applesafariMatch6.0.2
OR
applesafariMatch6.0.3
OR
applesafariMatch6.0.4
OR
applesafariMatch6.0.5
OR
applesafariMatch6.1
OR
applesafariMatch6.1.1
OR
applesafariMatch6.1.2
OR
applesafariMatch6.1.3
Node
applesafariMatch7.0
OR
applesafariMatch7.0.1
OR
applesafariMatch7.0.2
OR
applesafariMatch7.0.3
OR
applesafariMatch7.0.4
VendorProductVersionCPE
applesafari*cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
applesafari6.0cpe:2.3:a:apple:safari:6.0:*:*:*:*:*:*:*
applesafari6.0.1cpe:2.3:a:apple:safari:6.0.1:*:*:*:*:*:*:*
applesafari6.0.2cpe:2.3:a:apple:safari:6.0.2:*:*:*:*:*:*:*
applesafari6.0.3cpe:2.3:a:apple:safari:6.0.3:*:*:*:*:*:*:*
applesafari6.0.4cpe:2.3:a:apple:safari:6.0.4:*:*:*:*:*:*:*
applesafari6.0.5cpe:2.3:a:apple:safari:6.0.5:*:*:*:*:*:*:*
applesafari6.1cpe:2.3:a:apple:safari:6.1:*:*:*:*:*:*:*
applesafari6.1.1cpe:2.3:a:apple:safari:6.1.1:*:*:*:*:*:*:*
applesafari6.1.2cpe:2.3:a:apple:safari:6.1.2:*:*:*:*:*:*:*
Rows per page:
1-10 of 161

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

AI Score

6.2

Confidence

Low

EPSS

0.003

Percentile

68.2%