CVE-2010-1120: Code Injection
Published Mar 25, 2010
·Updated
Unspecified vulnerability in Safari 4 on Apple Mac OS X 10.6 allows remote attackers to execute arbitrary code via unknown vectors, as demonstrated by Charlie Miller during a Pwn2Own competition at CanSecWest 2010.
Affected Software
2 affected components
Apple Safari=4.0
Apple iOS and macOS=10.6.0
Event History
Mar 25, 2010
CVE Published
via MITRE·08:31 PM
Data Sourced
via MITRE·08:31 PM
Description
Data Sourced
09:00 PM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·09:00 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-1120?
CVE-2010-1120 is classified as a critical vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2010-1120?
To fix CVE-2010-1120, users should update their Safari browser to the latest version provided by Apple.
3
What software is affected by CVE-2010-1120?
CVE-2010-1120 specifically affects Safari version 4.0 running on Mac OS X 10.6.
4
Can CVE-2010-1120 be exploited through the web?
Yes, CVE-2010-1120 can be exploited by remote attackers via malicious web content or links.
5
Is CVE-2010-1120 still a threat in modern systems?
CVE-2010-1120 is not a current threat for up-to-date systems, but users with outdated software may remain vulnerable.