CVE-2007-3514: High severity Safari vulnerability
Cross-domain vulnerability in Apple Safari for Windows 3.0.2 allows remote attackers to bypass the Same Origin Policy and access restricted information from other domains via JavaScript that overwrites the document variable and statically sets the document.domain attribute to a file:// location, a different vector than CVE-2007-3482.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-3514?
CVE-2007-3514 is classified as a high severity vulnerability due to its potential to bypass the Same Origin Policy and compromise user privacy.
How do I fix CVE-2007-3514?
The recommended fix for CVE-2007-3514 is to update Apple Safari to a newer version that addresses this cross-domain vulnerability.
What type of attack is possible with CVE-2007-3514?
CVE-2007-3514 allows remote attackers to execute JavaScript that can access sensitive information from other domains.
Which software is affected by CVE-2007-3514?
CVE-2007-3514 specifically affects Apple Safari version 3.0.2 for Windows.
Can CVE-2007-3514 impact user data?
Yes, CVE-2007-3514 can lead to unauthorized access to user data from different domains, posing a significant risk.