CVE-2007-0742: High severity Apple iOS and macOS vulnerability
Published Apr 24, 2007
·Updated
The WebFoundation framework in Apple Mac OS X 10.3.9 and earlier allows subdomain cookies to be accessed by the parent domain, which allows remote attackers to obtain sensitive information.
Affected Software
1 affected component
Apple iOS and macOS<=10.3.9
Remediation
Patch Available
Event History
Apr 24, 2007
CVE Published
05:19 PM
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-0742?
CVE-2007-0742 is considered a medium severity vulnerability due to its ability to allow remote attackers to access sensitive information.
2
How do I fix CVE-2007-0742?
To fix CVE-2007-0742, you should upgrade to a version of Mac OS X that is later than 10.3.9.
3
What systems are affected by CVE-2007-0742?
CVE-2007-0742 affects Apple Mac OS X versions 10.3.9 and earlier.
4
What type of attack is enabled by CVE-2007-0742?
CVE-2007-0742 enables remote attackers to obtain sensitive information through subdomain cookie leakage.
5
Can the vulnerability CVE-2007-0742 be exploited remotely?
Yes, CVE-2007-0742 can be exploited remotely by attackers to access sensitive data.