The host is installed with Apple Safari before 4.0 and is prone to a cross-site scripting vulnerability. A flaw is present in the application, which fails to properly handle vectors involving access to frame contents after completion of a page transition. Successful exploitation could allow attackers to inject arbitrary web script or HTML.