4.3
CVSSv2

CVE-2012-3714

Published: 20/09/2012 Updated: 29/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

The Form Autofill feature in Apple Safari prior to 6.0.1 does not restrict the filled fields to the set of fields contained in an Autofill popover, which allows remote malicious users to obtain the Me card from an Address Book via a crafted web site.

Vulnerable Product Search on Vulmon Subscribe to Product

apple safari 3.0.1

apple safari 4.0.3

apple safari 3.2.2b

apple safari 3.2.2

apple safari 4.0.1

apple safari 4.0

apple safari 2.0.2

apple safari 2.0.3

apple safari 1.2.4

apple safari 1.2.5

apple safari 1.0

apple safari 1.0.3

apple safari 5.0.5

apple safari 1.3.0

apple safari 1.2.0

apple safari 3.0.1b

apple safari 3.0.3b

apple safari 5.0.6

apple safari 3.1.0b

apple safari 5.1.5

apple safari 5.1.6

apple safari 5.1.7

apple safari 3.2.1b

apple safari 3.2.0b

apple safari 3

apple safari 1.1.1

apple safari 3.0.2

apple safari 3.0.3

apple safari 3.1.2

apple safari 1.2

apple safari 1.2.1

apple safari 4.0.5

apple safari 1.1

apple safari 3.0.4

apple safari 5.1.2

apple safari 4.1

apple safari 4.1.2

apple safari 2

apple safari 1.0.2

apple safari 1.0.1

apple safari 3.2.1

apple safari 5.0.4

apple safari 3.2.0

apple safari 5.0

apple safari 3.0

apple safari 2.0.4

apple safari 1.3.2

apple safari 1.3

apple safari 1.3.1

apple safari 5.1.1

apple safari 4.0.4

apple safari 4.1.1

apple safari 5.0.2

apple safari 1.1.0

apple safari 1.0b1

apple safari 3.0.0b

apple safari 3.0.0

apple safari 5.1

apple safari

apple safari 3.1.2b

apple safari 3.1.1b

apple safari 4.0.0b

apple safari 5.1.3

apple safari 5.1.4

apple safari 2.0

apple safari 2.0.1

apple safari 1.2.2

apple safari 1.2.3

apple safari 4.0.2

apple safari 3.1.1

apple safari 5.0.1

apple safari 1.0.0

apple safari 1.0.0b2

apple safari 1.0.0b1

apple safari 2.0.0

apple safari 3.0.2b

apple safari 3.1.0

apple safari 3.0.4b