cbcvebase.
CVE-2010-1386
published 2010-08-19

CVE-2010-1386: page/Geolocation.cpp in WebCore in WebKit before r56188 and before 1.2.5 does not properly restrict access to the lastPosition function, which has unspecified…

PriorityP335critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
2.13%
79.9th percentile
page/Geolocation.cpp in WebCore in WebKit before r56188 and before 1.2.5 does not properly restrict access to the lastPosition function, which has unspecified impact and remote attack vectors, aka rdar problem 7746357.

Affected

2 ranges
VendorProductVersion rangeFixed in
applewebkit<= r56187
applewebkit
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.