Lucene search

K
nvd[email protected]NVD:CVE-2007-2398
HistoryJun 21, 2007 - 10:30 a.m.

CVE-2007-2398

2007-06-2110:30:00
web.nvd.nist.gov
8

CVSS2

7.1

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

COMPLETE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:C/A:N

AI Score

6.3

Confidence

Low

EPSS

0.029

Percentile

90.9%

Apple Safari 3.0.1 beta (522.12.12) on Windows allows remote attackers to modify the window title and address bar while filling the main window with arbitrary content by setting the location bar and using setTimeout() to create an event that modifies the window content, which could facilitate phishing attacks.

Affected configurations

Nvd
Node
microsoftwindows_2003_serverMatchsp2
AND
applesafariMatch3.0.1windows
VendorProductVersionCPE
microsoftwindows_2003_serversp2cpe:2.3:o:microsoft:windows_2003_server:sp2:*:*:*:*:*:*:*
applesafari3.0.1cpe:2.3:a:apple:safari:3.0.1:*:windows:*:*:*:*:*

CVSS2

7.1

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

COMPLETE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:C/A:N

AI Score

6.3

Confidence

Low

EPSS

0.029

Percentile

90.9%

Related for NVD:CVE-2007-2398