Lucene search

K
ubuntucveUbuntu.comUB:CVE-2010-1796
HistoryJul 30, 2010 - 12:00 a.m.

CVE-2010-1796

2010-07-3000:00:00
ubuntu.com
ubuntu.com
11

CVSS2

2.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:H/Au:N/C:P/I:N/A:N

EPSS

0.004

Percentile

72.2%

The AutoFill feature in Apple Safari before 5.0.1 on Mac OS X 10.5 through
10.6 and Windows, and before 4.1.1 on Mac OS X 10.4, allows remote
attackers to obtain sensitive Address Book Card information via JavaScript
code that forces keystroke events for input fields.

Notes

Author Note
jdstrand webkit is a fork of khtml from kdelibs. kdelibs5 is farther from it, while qt4-x11 attempts to unify khtml and webkit.
mdeslaur webkitkde is a wrapper around qt4-x11’s webkit. safari-specific

CVSS2

2.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:H/Au:N/C:P/I:N/A:N

EPSS

0.004

Percentile

72.2%