5
CVSSv2

CVE-2010-0314

Published: 14/01/2010 Updated: 18/03/2011
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Apple Safari allows remote malicious users to discover a redirect's target URL, for the session of a specific user of a web site, by placing the site's URL in the HREF attribute of a stylesheet LINK element, and then reading the document.styleSheets[0].href property value.

Vulnerable Product Search on Vulmon Subscribe to Product

apple safari

Exploits

source: wwwsecurityfocuscom/bid/37925/info Apple Safari is prone to a remote information-disclosure vulnerability Attackers can exploit this issue to obtain potentially sensitive information that may lead to further attacks <link rel="stylesheet" type="text/css" href="wwwexamplecom"> Hola <script language="javascript ...