10
CVE-2008-2303
- EPSS 19.35%
- Published 14.07.2008 18:41:00
- Last modified 09.04.2025 00:30:58
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
Integer signedness error in Safari on Apple iPhone before 2.0 and iPod touch before 2.0 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving JavaScript array indices that trigger an out-of-bounds access, a different vulnerability than CVE-2008-2307.
Data is provided by the National Vulnerability Database (NVD)
Apple ≫ Safari
Apple ≫ Iphone Version1.0
Apple ≫ Iphone Version1.1.3
Apple ≫ Iphone Version1.1.4
Apple ≫ Iphone Version1.02
Apple ≫ Ipod Touch Version1.1
Apple ≫ Ipod Touch Version1.1.1
Apple ≫ Ipod Touch Version1.1.2
Apple ≫ Ipod Touch Version1.1.3
Apple ≫ Ipod Touch Version1.1.4
Apple ≫ iPhone OS Version1.0.1
Apple ≫ iPhone OS Version1.0.2
Apple ≫ iPhone OS Version1.1.1
Apple ≫ iPhone OS Version1.1.2
Apple ≫ Iphone Version1.1.3
Apple ≫ Iphone Version1.1.4
Apple ≫ Iphone Version1.02
Apple ≫ Ipod Touch Version1.1
Apple ≫ Ipod Touch Version1.1.1
Apple ≫ Ipod Touch Version1.1.2
Apple ≫ Ipod Touch Version1.1.3
Apple ≫ Ipod Touch Version1.1.4
Apple ≫ iPhone OS Version1.0.1
Apple ≫ iPhone OS Version1.0.2
Apple ≫ iPhone OS Version1.1.1
Apple ≫ iPhone OS Version1.1.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 19.35% | 0.952 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|