Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
CFNetwork in Apple Safari before 5.0.6 on Windows allows remote web servers to execute arbitrary code by replaying the NTLM credentials of a client user, related to a "credential reflection" issue.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple Safari CFNetwork任意代码执行漏洞
Vulnerability Description
CFNetwork是一个低层次、高性能的框架,是BSD sockets(套接字)的扩展,它可使用户灵活操纵协议栈,以及提供标准化抽象的API简化FTP HTTP服务器交互任务、解决DNS主机解析等。 当使用NTLM认证协议时,基于Windows平台的Apple Safari 5.0.6之前版本中的CFNetwork中存在任意代码执行漏洞。远程web服务器可通过重用客户端用户的NTLM证书执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A