CVE-2018-4186Sensitive Information Exposure in Apple Safari

Severity
7.5HIGHNVD
EPSS
0.3%
top 44.66%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 11
Latest updateMay 14

Description

In Safari before 11.1, an information leakage issue existed in the handling of downloads in Safari Private Browsing. This issue was addressed with additional validation.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages2 packages

NVDapple/safari< 11.1
Appleapple/safari11.1

🔴Vulnerability Details

1
GHSA
GHSA-78gq-f67g-r84p: In Safari before 112022-05-14

📋Vendor Advisories

1
Apple
CVE-2018-4186: Safari 11.12018-03-29
CVE-2018-4186 — Sensitive Information Exposure in Apple | cvebase