Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
WebKit in Apple Safari before 4.0.3 does not properly restrict the URL scheme of the pluginspage attribute of an EMBED element, which allows user-assisted remote attackers to launch arbitrary file: URLs and obtain sensitive information via a crafted HTML document.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple Safari WebKit敏感信息泄露漏洞
Vulnerability Description
Apple Safari是一款WEB浏览器。 Apple Safari WebKit 的 URL策略中存在远程信息泄露漏洞。由于对URL策略中的EMBED元素内嵌属性的限制不严格,远程攻击者可以借助特制的HTML文档打开任意文件的URLs,获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A