CVE-2009-2197Apple Safari vulnerability

CWE-193 documents3 sources
Severity
4.3MEDIUMNVD
EPSS
0.4%
top 40.74%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 24
Latest updateMay 2

Description

Apple Safari before 9.1 allows remote attackers to spoof the user interface via a web page that places text in a crafted context, leading to unintended use of that text within a Safari dialog.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:NExploitability: 2.8 | Impact: 1.4

Affected Packages2 packages

NVDapple/safari9.0.3
Appleapple/safari9.1

🔴Vulnerability Details

1
GHSA
GHSA-h555-7qwc-mr94: Apple Safari before 92022-05-02

📋Vendor Advisories

1
Apple
CVE-2009-2197: Safari 9.1
CVE-2009-2197 — Apple Safari vulnerability | cvebase