CVE-2010-1796
- EPSS 0.34%
- Veröffentlicht 30.07.2010 20:30:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The AutoFill feature in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4, allows remote attackers to obtain sensitive Address Book Card information via JavaScript code that forces keystroke events...
CVE-2010-1778
- EPSS 0.2%
- Veröffentlicht 30.07.2010 20:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4, allows remote attackers to inject arbitrary web script or HTML via an RSS feed.
CVE-2010-1780
- EPSS 7.06%
- Veröffentlicht 30.07.2010 20:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in WebKit in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4; and webkitgtk before 1.2.6; allows remote attackers to execute arbitrary code or cause a denial of servi...
CVE-2010-1782
- EPSS 7.11%
- Veröffentlicht 30.07.2010 20:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4; and webkitgtk before 1.2.6; allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and applic...
CVE-2010-1783
- EPSS 5.36%
- Veröffentlicht 30.07.2010 20:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4; and webkitgtk before 1.2.6; does not properly handle dynamic modification of a text node, which allows remote attackers to execute arbit...
CVE-2010-1205
- EPSS 17.03%
- Veröffentlicht 30.06.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.
CVE-2010-2249
- EPSS 1.57%
- Veröffentlicht 30.06.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Memory leak in pngrutil.c in libpng before 1.2.44, and 1.4.x before 1.4.3, allows remote attackers to cause a denial of service (memory consumption and application crash) via a PNG image containing malformed Physical Scale (aka sCAL) chunks.
CVE-2010-2454
- EPSS 0.27%
- Veröffentlicht 25.06.2010 19:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Apple Safari does not properly manage the address bar between the request to open a URL and the retrieval of the new document's content, which might allow remote attackers to conduct spoofing attacks via a crafted HTML document, a related issue to CV...
CVE-2010-1771
- EPSS 7.64%
- Veröffentlicht 11.06.2010 19:30:23
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vecto...
CVE-2010-1774
- EPSS 5.28%
- Veröffentlicht 11.06.2010 19:30:23
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, accesses out-of-bounds memory during processing of HTML tables, which allows remote attackers to execute arbitrary code or cause a denial of...