The XSLT functionality in WebKit in Apple Safari prior to 4.0 does not properly implement the document function, which allows remote malicious users to read (1) arbitrary local files and (2) files from different security zones via unspecified vectors.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apple safari 1.1 |
||
apple safari 1.3.1 |
||
apple safari 3.2.3 |
||
apple safari 2.0.2 |
||
apple safari 3.1 |
||
apple safari 3.1.2 |
||
apple safari 3.0 |
||
apple safari 0.8 |
||
apple safari 2.0 |
||
apple safari 3.0.4 |
||
apple safari 0.9 |
||
apple safari 3.0.3 |
||
apple safari 1.3.2 |
||
apple safari 1.2 |
||
apple safari |
||
apple safari 3.2.1 |
||
apple safari 3.0.2 |
||
apple safari 2.0.4 |
||
apple safari 3.1.1 |
||
apple safari 1.0.3 |
||
apple safari 1.0 |
||
apple safari 1.3 |
||
apple safari 3.2 |
||
apple safari 3.0.1 |
||
apple safari 3.2.2 |