First published: Thu Jun 28 2007(Updated: )
Cross-domain vulnerability in Apple Safari for Windows 3.0.1 allows remote attackers to bypass the "same origin policy" and access restricted information from other domains via JavaScript that overwrites the document variable and statically sets the document.domain attribute.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows NT | =3.0.1 | |
Apple Safari |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3482 is considered a medium severity vulnerability due to its potential to allow unauthorized access to restricted data across domains.
To fix CVE-2007-3482, users should update their Apple Safari browser to the latest version that addresses this vulnerability.
CVE-2007-3482 affects users of Apple Safari browser version 3.0.1 on Windows systems.
CVE-2007-3482 is a cross-domain vulnerability that allows JavaScript to bypass the same origin policy.
Yes, CVE-2007-3482 can be exploited remotely by attackers through malicious scripts executed in the Safari browser.