Cross-site scripting (XSS) vulnerability in WebCore, as used in Apple Safari before 3.1, allows remote attackers to inject arbitrary web script or HTML by using the window.open function to change the security context of a web page.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2008-03-19T00:00:00
Updated: 2017-08-07T12:57:01
Reserved: 2008-02-26T00:00:00
Link: CVE-2008-1006
JSON object: View
NVD Information
Status : Modified
Published: 2008-03-19T00:44:00.000
Modified: 2017-08-08T01:29:48.947
Link: CVE-2008-1006
JSON object: View
Redhat Information
No data.
CWE