Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The API in the WebKit Plug-ins component in Apple Safari before 9 does not provide notification of an HTTP Redirection (aka 3xx) status code to a plugin, which allows remote attackers to bypass intended request restrictions via a crafted web site.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple Safari WebKit Plug-ins组件输入验证漏洞
Vulnerability Description
Apple Safari是美国苹果(Apple)公司的一款Web浏览器,是Mac OS X和iOS操作系统附带的默认浏览器。WebKit Plug-ins是其中的一个开源Web浏览器引擎组件。 Apple Safari 8.0.8及之前版本的WebKit Plug-ins组件中的API存在安全漏洞,该漏洞源于程序没有向插件提供HTTP Redirection状态码的通知。远程攻击者可借助特制的Web站点利用该漏洞绕过既定的请求限制。
CVSS Information
N/A
Vulnerability Type
N/A