Lucene search

K
nvd[email protected]NVD:CVE-2009-1708
HistoryJun 10, 2009 - 6:00 p.m.

CVE-2009-1708

2009-06-1018:00:00
web.nvd.nist.gov
8

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.4

Confidence

High

EPSS

0.033

Percentile

91.4%

Apple Safari before 4.0 does not prevent calls to the open-help-anchor URL handler by web sites, which allows remote attackers to open arbitrary local help files, and execute arbitrary code or obtain sensitive information, via a crafted call.

Affected configurations

Nvd
Node
applesafariRange4.0_beta-mac
OR
applesafariMatch0.8-mac
OR
applesafariMatch0.9-mac
OR
applesafariMatch1.0-mac
OR
applesafariMatch1.0.3-mac
OR
applesafariMatch1.1-mac
OR
applesafariMatch1.2-mac
OR
applesafariMatch1.3-mac
OR
applesafariMatch1.3.1-mac
OR
applesafariMatch1.3.2-mac
OR
applesafariMatch2.0-mac
OR
applesafariMatch2.0.2-mac
OR
applesafariMatch2.0.4-mac
OR
applesafariMatch3.0-mac
OR
applesafariMatch3.0.2-mac
OR
applesafariMatch3.0.3-mac
OR
applesafariMatch3.0.4-mac
OR
applesafariMatch3.1-mac
OR
applesafariMatch3.1.1-mac
OR
applesafariMatch3.1.2-mac
OR
applesafariMatch3.2.1-mac
OR
applesafariMatch3.2.3-mac
Node
applesafariRange3.2.3-windows
OR
applesafariMatch3.0-windows
OR
applesafariMatch3.0.1-windows
OR
applesafariMatch3.0.2-windows
OR
applesafariMatch3.0.3-windows
OR
applesafariMatch3.0.4-windows
OR
applesafariMatch3.1-windows
OR
applesafariMatch3.1.1-windows
OR
applesafariMatch3.1.2-windows
OR
applesafariMatch3.2-windows
OR
applesafariMatch3.2.1-windows
OR
applesafariMatch3.2.2-windows
VendorProductVersionCPE
applesafari*cpe:2.3:a:apple:safari:*:-:mac:*:*:*:*:*
applesafari0.8cpe:2.3:a:apple:safari:0.8:-:mac:*:*:*:*:*
applesafari0.9cpe:2.3:a:apple:safari:0.9:-:mac:*:*:*:*:*
applesafari1.0cpe:2.3:a:apple:safari:1.0:-:mac:*:*:*:*:*
applesafari1.0.3cpe:2.3:a:apple:safari:1.0.3:-:mac:*:*:*:*:*
applesafari1.1cpe:2.3:a:apple:safari:1.1:-:mac:*:*:*:*:*
applesafari1.2cpe:2.3:a:apple:safari:1.2:-:mac:*:*:*:*:*
applesafari1.3cpe:2.3:a:apple:safari:1.3:-:mac:*:*:*:*:*
applesafari1.3.1cpe:2.3:a:apple:safari:1.3.1:-:mac:*:*:*:*:*
applesafari1.3.2cpe:2.3:a:apple:safari:1.3.2:-:mac:*:*:*:*:*
Rows per page:
1-10 of 341

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.4

Confidence

High

EPSS

0.033

Percentile

91.4%

Related for NVD:CVE-2009-1708