[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*


oval:org.secpod.oval:def:4326
The host is installed with Apple Safari before 4.1 or 5.0 and is prone to a cross site scripting vulnerability. A flaw is present in the application, which fails to handle vectors involving DOM constructor objects. Successful exploitation could allow attackers to inject arbitrary web script or HTML.

oval:org.secpod.oval:def:4411
The host is missing an important security update according to APPLE-SA-2010-06-16-1. The flaws are present in the application, which fails to sanitize user supplied data. Successful exploitation could allow attackers to crash the service.

oval:org.secpod.oval:def:4277
The host is missing a security update according to Apple advisory, APPLE-SA-2010-06-07-1. The update is required to fix multiple vulnerabilities. The flaws are present in the application, which fails to handle malicious data. Successful exploitation could allow attackers to disclose sensitive inform ...

oval:org.mitre.oval:def:7464
Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 5.0 or Apple iTunes before 9.2 on Windows, allows remote attackers to inject arbitrary web script or HTML via vectors involving DOM constructor objects, related to a "scope management issue."

oval:org.secpod.oval:def:300417
Multiple cross-site scripting, denial of service and arbitrary code execution security flaws were discovered in webkit. Please consult the CVE web links for further information. The updated packages have been upgraded to the latest version to correct these issues.

CPE    66
cpe:/o:apple:mac_os_x_server:10.5.6
cpe:/o:apple:mac_os_x:10.4.9
cpe:/o:apple:mac_os_x_server:10.5.5
cpe:/o:apple:mac_os_x:10.4.8
...
CWE    1
CWE-79
*CVE
CVE-2010-1395

© SecPod Technologies