CVE-2012-3715Apple Safari vulnerability

CWE-3102 documents2 sources
Severity
4.3MEDIUMNVD
EPSS
0.4%
top 37.11%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 20
Latest updateMay 17

Description

Apple Safari before 6.0.1 makes http requests for https URIs in certain circumstances involving a paste into the address bar, which allows user-assisted remote attackers to obtain sensitive information by sniffing the network.

CVSS vector

AV:N/AC:M/C:P/I:N/A:NExploitability: 8.6 | Impact: 2.9

Affected Packages1 packages

NVDapple/safari6.0+77

🔴Vulnerability Details

1
GHSA
GHSA-6x8h-r754-qv46: Apple Safari before 62022-05-17