First published: Wed May 09 2007(Updated: )
Unspecified vulnerability in Apple Safari allows local users to obtain sensitive information (saved keychain passwords) via the document.loginform.password.value JavaScript parameter loaded from an AppleScript script.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Safari |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-2580 is considered a vulnerability that can lead to unauthorized access to sensitive information.
To mitigate CVE-2007-2580, ensure that you are using the latest version of Apple Safari with all security updates installed.
CVE-2007-2580 allows local users to obtain sensitive information such as saved keychain passwords.
CVE-2007-2580 affects local users of Apple Safari who can exploit the vulnerability through JavaScript.
CVE-2007-2580 is an unspecified vulnerability in Apple Safari that allows local users to access sensitive data via a JavaScript parameter.