5.8
CVSSv2

CVE-2011-0166

Published: 11/03/2011 Updated: 17/08/2017
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

The HTML5 drag and drop functionality in WebKit in Apple Safari prior to 5.0.4 allows user-assisted remote malicious users to bypass the Same Origin Policy and obtain sensitive information via vectors related to the dragging of content. NOTE: this might overlap CVE-2011-0778.

Vulnerable Product Search on Vulmon Subscribe to Product

apple safari 2.0.3

apple safari 1.3.2

apple safari 1.2.0

apple safari 1.0.3

apple safari 1.0.2

apple safari 4.1.2

apple safari 1.0.0

apple safari 3

apple safari 2.0.4

apple safari 3.0.2

apple safari 3.0.4b

apple safari 3.0.1b

apple safari 3.1.0b

apple safari 2.0.0

apple safari 2

apple safari 1.2.5

apple safari 2.0.2

apple safari 1.0

apple safari 5.0.1

apple safari 3.0.1

apple safari 3.0.0b

apple safari 3.0.2b

apple safari 3.0.4

apple safari 3.2.2

apple safari 5.0.2

apple safari

apple safari 2.0.1

apple safari 1.3.1

apple safari 1.2.2

apple safari 1.2

apple safari 1.0.0b1

apple safari 1.0.0b2

apple safari 3.0

apple safari 3.0.0

apple safari 3.0.3

apple safari 3.0.3b

apple safari 3.1.2

apple safari 3.2.0

apple safari 4.1

apple safari 4.1.1

apple safari 2.0

apple safari 1.3.0

apple safari 1.2.4

apple safari 1.2.3

apple safari 1.1.1

apple safari 1.2.1

apple safari 1.1.0

apple safari 1.0.1

apple safari 1.3

apple safari 5.0

apple webkit

apple safari 3.1.0

apple safari 3.1.1

apple safari 3.2.1

apple safari 1.1