CVE-2007-2409

Cross-domain vulnerability in WebCore on Apple Mac OS X 10.3.9 and 10.4.10 allows remote attackers to obtain sensitive information via a popup window, which is able to read the current URL of the parent window.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:apple:mac_os_x:10.3.9:*:*:*:*:*:*:*
cpe:2.3:o:apple:mac_os_x:10.4.10:*:*:*:*:*:*:*
cpe:2.3:o:apple:mac_os_x_server:10.3.9:*:*:*:*:*:*:*
cpe:2.3:o:apple:mac_os_x_server:10.4.10:*:*:*:*:*:*:*
cpe:2.3:a:apple:webcore:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-08-03 10:17

Updated : 2023-12-10 10:40


NVD link : CVE-2007-2409

Mitre link : CVE-2007-2409

CVE.ORG link : CVE-2007-2409


JSON object : View

Products Affected

apple

  • mac_os_x
  • mac_os_x_server
  • webcore