9.3

CVE-2007-2399

WebKit in Apple Mac OS X 10.3.9, 10.4.9 and later, and iPhone before 1.0.1 performs an "invalid type conversion", which allows remote attackers to execute arbitrary code via unspecified frame sets that trigger memory corruption.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
ApplemacOS X Version10.3.9
   AppleiPhone OS Version <= 1.0
ApplemacOS X Version10.4.9
   AppleiPhone OS Version <= 1.0
ApplemacOS X Server Version10.3.9
   AppleiPhone OS Version <= 1.0
ApplemacOS X Server Version10.4.9
   AppleiPhone OS Version <= 1.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 15.25% 0.942
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C