Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2012-0647

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2012-0647
Last Modified 13 Mar 2012 10:44:51
Published 12 Mar 2012 05:55:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2012-0647

Summary

WebKit in Apple Safari before 5.1.4 does not properly handle redirects in conjunction with HTTP authentication, which might allow remote web servers to capture credentials by logging the Authorization HTTP header.

Vulnerable Systems

Application

  • Apple Safari

  • Apple Safari 1.0

  • Apple Safari 1.0.0

  • Apple Safari 1.0.0b1

  • Apple Safari 1.0.0b2

  • Apple Safari 1.0.1

  • Apple Safari 1.0.2

  • Apple Safari 1.0.3

  • Apple Safari 1.0b1

  • Apple Safari 1.1

  • Apple Safari 1.1.0

  • Apple Safari 1.1.1

  • Apple Safari 1.2

  • Apple Safari 1.2.0

  • Apple Safari 1.2.1

  • Apple Safari 1.2.2

  • Apple Safari 1.2.3

  • Apple Safari 1.2.4

  • Apple Safari 1.2.5

  • Apple Safari 1.3

  • Apple Safari 1.3.0

  • Apple Safari 1.3.1

  • Apple Safari 1.3.2

  • Apple Safari 2

  • Apple Safari 2.0

  • Apple Safari 2.0.0

  • Apple Safari 2.0.1

  • Apple Safari 2.0.2

  • Apple Safari 2.0.3

  • Apple Safari 2.0.4

  • Apple Safari 3

  • Apple Safari 3.0

  • Apple Safari 3.0.0

  • Apple Safari 3.0.0b

  • Apple Safari 3.0.1

  • Apple Safari 3.0.1b

  • Apple Safari 3.0.2

  • Apple Safari 3.0.2b

  • Apple Safari 3.0.3

  • Apple Safari 3.0.3b

  • Apple Safari 3.0.4

  • Apple Safari 3.0.4b

  • Apple Safari 3.1.0

  • Apple Safari 3.1.0b

  • Apple Safari 3.1.1

  • Apple Safari 3.1.1b

  • Apple Safari 3.1.2

  • Apple Safari 3.1.2b

  • Apple Safari 3.2.0

  • Apple Safari 3.2.0b

  • Apple Safari 3.2.1

  • Apple Safari 3.2.1b

  • Apple Safari 3.2.2

  • Apple Safari 3.2.2b

  • Apple Safari 4.0

  • Apple Safari 4.0.0b

  • Apple Safari 4.0.1

  • Apple Safari 4.0.2

  • Apple Safari 4.0.3

  • Apple Safari 4.0.4

  • Apple Safari 4.0.5

  • Apple Safari 4.1

  • Apple Safari 4.1.1

  • Apple Safari 4.1.2

  • Apple Safari 5.0

  • Apple Safari 5.0.1

  • Apple Safari 5.0.2

  • Apple Safari 5.0.4

  • Apple Safari 5.0.5

  • Apple Safari 5.0.6

  • Apple Safari 5.1

  • Apple Safari 5.1.1

  • Apple Safari 5.1.2

  • Apple Safari 5.1.3


References

APPLE - APPLE-SA-2012-03-12-1

Related Patches

Apple 2012-03-12 Safari Update 5.1.4 (Lion)

Apple 2012-03-12 Safari Update 5.1.4 (Snow Leopard)


Last Updated: 27 May 2016 10:57:27