Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

David Belcher

Researcher fromBlackBerry Security Incident Response Team
#51588of 53,632
4.3Total CVSS
Vulnerabilities · 1
PT-2012-4937
4.3
2012-07-25
Apple · Safari · CVE-2012-3696
**Name of the Vulnerable Software and Affected Versions** Apple Safari versions prior to 6.0 **Description** A CRLF injection issue exists, allowing remote attackers to inject arbitrary HTTP headers and conduct HTTP request splitting attacks via a crafted web site that leverages improper WebSockets URI handling. **Recommendations** For versions prior to 6.0, update to version 6.0 or later to resolve the issue.