PT-2012-4954 · Apple · Safari

Aaron Sigel

+1

·

Publicado

2012-09-20

·

Atualizado

2017-08-29

·

CVE-2012-3713

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Apple Safari versions prior to 6.0.1
Description The issue arises from improper handling of the Quarantine attribute of HTML documents. This allows remote attackers to read arbitrary files on a user's system by leveraging the presence of a downloaded document, but it requires user assistance.
Recommendations For versions prior to 6.0.1, update to version 6.0.1 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2012-3713

Produtos afetados

Safari