Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Mobile Safari in Apple iOS before 7 does not prevent HTML interpretation of a document served with a text/plain content type, which allows remote attackers to conduct cross-site scripting (XSS) attacks by uploading a file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple iOS Mobile Safari浏览器跨站脚本漏洞
Vulnerability Description
Apple Mobile Safari是美国苹果(Apple)公司的一款用于移动设备中的浏览器。 Apple iOS 6.1.4及之前的版本中的Mobile Safari浏览器中存在跨站脚本漏洞,程序没有阻止服务器发送‘Content-Type: text/plain’ 内容类型的文档。攻击者可通过上传文件利用该漏洞进行跨站脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A