PT-2009-4190 · Apple · Safari

Dean Mcnamee

·

Published

2009-06-10

·

Updated

2017-08-17

·

CVE-2009-1710

CVSS v2.0

2.6

Low

VectorAV:N/AC:H/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Safari versions prior to 4.0
Description: The issue allows remote attackers to spoof the browser's display of the host name, security indicators, and other UI elements. This is achieved through a custom cursor in conjunction with a modified CSS3 hotspot property.
Recommendations: For versions prior to 4.0, update to version 4.0 or later to resolve the issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2009-1710
DSA-1950-1

Affected Products

Safari