Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in the PDF functionality in WebKit in Apple Safari before 6.2.7, 7.x before 7.1.7, and 8.x before 8.0.7 allows remote attackers to inject arbitrary web script or HTML via a crafted URL in embedded PDF content.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple Safari WebKit PDF功能跨站脚本漏洞
Vulnerability Description
Apple Safari是美国苹果(Apple)公司的一款Web浏览器,是Mac OS X和iOS操作系统附带的默认浏览器。WebKit是KDE、苹果(Apple)、谷歌(Google)等公司共同开发的一套开源Web浏览器引擎,目前被Apple Safari及Google Chrome等浏览器使用。 Apple Safari的WebKit中的PDF功能存在跨站脚本漏洞。远程攻击者可借助嵌入式的PDF内容中特制的URL利用该漏洞注入任意Web脚本或HTML。以下版本受到影响:Apple Safari 6.2
CVSS Information
N/A
Vulnerability Type
N/A