CVE-2010-1126: Infoleak
Published Mar 26, 2010
·Updated
The JavaScript implementation in WebKit allows remote attackers to send selected keystrokes to a form field in a hidden frame, instead of the intended form field in a visible frame, via certain calls to the focus method.
Affected Software
1 affected component
Apple WebKit
Event History
Mar 26, 2010
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Data Sourced
via NVD·08:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-1126?
CVE-2010-1126 has been classified as a moderate severity vulnerability.
2
How can I fix CVE-2010-1126?
To mitigate CVE-2010-1126, ensure you are using the latest version of Apple WebKit that addresses this vulnerability.
3
What type of attack does CVE-2010-1126 enable?
CVE-2010-1126 enables remote attackers to send keystrokes to unintended form fields in a hidden frame.
4
Which software is affected by CVE-2010-1126?
CVE-2010-1126 affects WebKit implementations in Apple products.
5
Is CVE-2010-1126 exploitable via the web?
Yes, CVE-2010-1126 can be exploited through malicious web content that leverages hidden frames.