Apple Safari AppleScript脚本未明本地漏洞

漏洞信息详情

Apple Safari AppleScript脚本未明本地漏洞

漏洞简介

Apple Safari中存在未明漏洞。本地用户可以借助从AppleScript脚本加载的document.loginform.password.value JavaScript参数,获得敏感信息。

漏洞公告

目前厂商还没有提供此漏洞的相关补丁或者升级程序,建议使用此软件的用户随时关注厂商的主页以获取最新版本:
http://www.apple.com

参考网址

来源: BID

名称: 23825

链接:http://www.securityfocus.com/bid/23825

来源: BUGTRAQ

名称: 20070517 Re: Apple Safari on MacOSX may reveal user’s saved passwords

链接:http://www.securityfocus.com/archive/1/archive/1/468869/100/0/threaded

来源: BUGTRAQ

名称: 20070516 RE: Apple Safari on MacOSX may reveal user’s saved passwords

链接:http://www.securityfocus.com/archive/1/archive/1/468737/100/0/threaded

来源: BUGTRAQ

名称: 20070516 Re: Apple Safari on MacOSX may reveal user’s saved passwords

链接:http://www.securityfocus.com/archive/1/archive/1/468727/100/0/threaded

来源: BUGTRAQ

名称: 20070515 Re: Apple Safari on MacOSX may reveal user’s saved passwords

链接:http://www.securityfocus.com/archive/1/archive/1/468719/100/0/threaded

来源: BUGTRAQ

名称: 20070515 RE: Apple Safari on MacOSX may reveal user’s saved passwords

链接:http://www.securityfocus.com/archive/1/archive/1/468650/100/0/threaded

来源: BUGTRAQ

名称: 20070514 Re: RE: Apple Safari on MacOSX may reveal user’s saved passwords

链接:http://www.securityfocus.com/archive/1/archive/1/468639/100/0/threaded

来源: BUGTRAQ

名称: 20070514 RE: Apple Safari on MacOSX may reveal user’s saved passwords

链接:http://www.securityfocus.com/archive/1/archive/1/468585/100/0/threaded

来源: BUGTRAQ

名称: 20070514 Apple Safari on MacOSX may reveal user’s saved passwords

链接:http://www.securityfocus.com/archive/1/archive/1/468544/100/0/threaded

来源: BUGTRAQ

名称: 20070504 safari’s saved password at risk

链接:http://www.securityfocus.com/archive/1/archive/1/467676/100/0/threaded

来源: OSVDB

名称: 35569

链接:http://www.osvdb.org/35569

来源: SREASON

名称: 2685

链接:http://securityreason.com/securityalert/2685

受影响实体

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享