Vulnerabilities
Vulnerable Software
Apple:  >> Safari  >> 1.2.1  Security Vulnerabilities
Apple Safari allows remote attackers to cause a denial of service (application crash) via a crafted data:// URL.
CVSS Score
5.0
EPSS Score
0.03
Published
2005-09-21
Safari in Mac OS X 10.3.9 and 10.4.2, when rendering Rich Text Format (RTF) files, can directly access URLs without performing the normal security checks, which allows remote attackers to execute arbitrary commands.
CVSS Score
7.5
EPSS Score
0.048
Published
2005-08-19
Safari in Mac OS X 10.3.9 and 10.4.2 submits forms from an XSL formatted page to the next page that is browsed by the user, which causes form data to be sent to the wrong site.
CVSS Score
2.6
EPSS Score
0.011
Published
2005-08-19
Safari in WebKit in Mac OS X 10.4 to 10.4.2 directly accesses URLs within PDF files without the normal security checks, which allows remote attackers to execute arbitrary code via links in a PDF file.
CVSS Score
5.1
EPSS Score
0.043
Published
2005-08-19
Safari 1.2.4 on Mac OS X 10.3.6 allows remote attackers to cause a denial of service (application crash from memory exhaustion), as demonstrated using Javascript code that continuously creates nested arrays and then sorts the newly created arrays.
CVSS Score
5.0
EPSS Score
0.016
Published
2005-01-10
Safari 1.x allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability, a different vulnerability than CVE-2004-1122.
CVSS Score
7.5
EPSS Score
0.024
Published
2005-01-10
Apple Safari 1.0 through 1.2.3 allows remote attackers to spoof the URL displayed in the status bar via TABLE tags.
CVSS Score
5.0
EPSS Score
0.044
Published
2004-11-01


Contact Us

Shodan ® - All rights reserved