Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in CFNetwork in Apple Safari before 5.0.6 allows remote attackers to inject arbitrary web script or HTML via a crafted text/plain file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple Safari CFNetwork跨站脚本攻击漏洞
Vulnerability Description
CFNetwork是一个低层次、高性能的框架,是BSD sockets(套接字)的扩展,它可使用户灵活操纵协议栈,以及提供标准化抽象的API简化FTP HTTP服务器交互任务、解决DNS主机解析等。 当处理“text/plain”内容类型时,Apple Safari 5.0.6之前版本中的CFNetwork中存在跨站脚本攻击漏洞。远程攻击者可借助特制的text/plain文件注入任意web脚本或者HTML。
CVSS Information
N/A
Vulnerability Type
N/A