Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2012-3695

Overview

Vulnerability Score 4.3 4.3
CVE Id CVE-2012-3695
Last Modified 21 Mar 2013 11:11:53
Published 25 Jul 2012 03:55:06
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2012-3695

Summary

Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 6.0 allows remote attackers to inject arbitrary web script or HTML by leveraging improper URL canonicalization during the handling of the location.href property.

Vulnerable Systems

Application

  • Apple Safari 1.0

  • Apple Safari 1.0.0

  • Apple Safari 1.0.0b1

  • Apple Safari 1.0.0b2

  • Apple Safari 1.0.1

  • Apple Safari 1.0.2

  • Apple Safari 1.0.3

  • Apple Safari 1.0b1

  • Apple Safari 1.1

  • Apple Safari 1.1.0

  • Apple Safari 1.1.1

  • Apple Safari 1.2

  • Apple Safari 1.2.0

  • Apple Safari 1.2.1

  • Apple Safari 1.2.2

  • Apple Safari 1.2.3

  • Apple Safari 1.2.4

  • Apple Safari 1.2.5

  • Apple Safari 1.3

  • Apple Safari 1.3.0

  • Apple Safari 1.3.1

  • Apple Safari 1.3.2

  • Apple Safari 2

  • Apple Safari 2.0

  • Apple Safari 2.0.0

  • Apple Safari 2.0.1

  • Apple Safari 2.0.2

  • Apple Safari 2.0.3

  • Apple Safari 2.0.4

  • Apple Safari 3

  • Apple Safari 3.0

  • Apple Safari 3.0.0

  • Apple Safari 3.0.0b

  • Apple Safari 3.0.1

  • Apple Safari 3.0.1b

  • Apple Safari 3.0.2

  • Apple Safari 3.0.2b

  • Apple Safari 3.0.3

  • Apple Safari 3.0.3b

  • Apple Safari 3.0.4

  • Apple Safari 3.0.4b

  • Apple Safari 3.1.0

  • Apple Safari 3.1.0b

  • Apple Safari 3.1.1

  • Apple Safari 3.1.1b

  • Apple Safari 3.1.2

  • Apple Safari 3.1.2b

  • Apple Safari 3.2.0

  • Apple Safari 3.2.0b

  • Apple Safari 3.2.1

  • Apple Safari 3.2.1b

  • Apple Safari 3.2.2

  • Apple Safari 3.2.2b

  • Apple Safari 4.0

  • Apple Safari 4.0.0b

  • Apple Safari 4.0.1

  • Apple Safari 4.0.2

  • Apple Safari 4.0.3

  • Apple Safari 4.0.4

  • Apple Safari 4.0.5

  • Apple Safari 4.1

  • Apple Safari 4.1.1

  • Apple Safari 4.1.2

  • Apple Safari 5.0

  • Apple Safari 5.0.1

  • Apple Safari 5.0.2

  • Apple Safari 5.0.4

  • Apple Safari 5.0.5

  • Apple Safari 5.0.6

  • Apple Safari 5.1

  • Apple Safari 5.1.1

  • Apple Safari 5.1.2

  • Apple Safari 5.1.3

  • Apple Safari 5.1.4

  • Apple Safari 5.1.5

  • Apple Safari 5.1.6

  • Apple Safari 5.1.7


References

CONFIRM - http://support.apple.com/kb/HT5400

APPLE - APPLE-SA-2012-07-25-1

CONFIRM - http://support.apple.com/kb/HT5503

APPLE - APPLE-SA-2012-09-19-1

BID - 54695

Related Patches

Apple 2012-07-25 Safari Update 6.0 (Lion)


Last Updated: 27 May 2016 10:53:33