cbcvebase.
CVE-2011-0187
published 2011-03-23

CVE-2011-0187: The plug-in in QuickTime in Apple Mac OS X before 10.6.7 allows remote attackers to bypass the Same Origin Policy and obtain potentially sensitive video data…

medium4.3CVSS 3.1
AVNACMAuNCPINAN
The plug-in in QuickTime in Apple Mac OS X before 10.6.7 allows remote attackers to bypass the Same Origin Policy and obtain potentially sensitive video data via vectors involving a cross-site redirect.

Affected

2 ranges
VendorProductVersion rangeFixed in
applemac_os_x< 10.6.710.6.7
applequicktime< 7.7.07.7.0