CVE-2009-1718Sensitive Information Exposure in Apple Safari

Severity
7.1HIGHNVD
EPSS
0.7%
top 28.83%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 10
Latest updateMay 2

Description

WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to obtain sensitive information via vectors involving drag events and the dragging of content over a crafted web page.

CVSS vector

AV:N/AC:M/C:C/I:N/A:NExploitability: 8.6 | Impact: 6.9

Affected Packages1 packages

NVDapple/safari4.0_beta+25

Patches

🔴Vulnerability Details

2
GHSA
GHSA-h62g-8w99-8m62: WebKit in Apple Safari before 42022-05-02
OSV
CVE-2009-1718: WebKit in Apple Safari before 42009-06-10