First published: Sat Dec 31 2005(Updated: )
Apple Safari 2.0.2 (aka 416.12) allows remote attackers to spoof the URL in the status bar via the title in an image in a link to a trusted site within a form to the malicious site. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mobile Safari | =2.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-4678 has a medium severity rating due to its potential to enable phishing attacks.
To mitigate CVE-2005-4678, users should upgrade to a newer version of Safari that addresses this vulnerability.
CVE-2005-4678 can lead to phishing scams by spoofing URL information in the Safari browser.
CVE-2005-4678 specifically affects Apple Safari version 2.0.2.
CVE-2005-4678 exploits the Safari browser by allowing attackers to spoof URL information in the status bar using an image title.