CVE-2008-3644Sensitive Information Exposure in Apple Safari

Severity
1.9LOWNVD
EPSS
0.1%
top 79.53%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 17
Latest updateMay 2

Description

Apple Safari before 3.2 does not properly prevent caching of form data for form fields that have autocomplete disabled, which allows local users to obtain sensitive information by reading the browser's page cache.

CVSS vector

AV:L/AC:M/C:P/I:N/A:NExploitability: 3.4 | Impact: 2.9

Affected Packages1 packages

NVDapple/safari3.1.2+33

🔴Vulnerability Details

1
GHSA
GHSA-whvw-qqj8-2wvw: Apple Safari before 32022-05-02