First published: Sun Sep 25 2016(Updated: )
The Safari Tabs component in Apple Safari before 10 allows remote attackers to spoof the address bar of a tab via a crafted web site.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mobile Safari | <=9.1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-4751 is classified as a medium severity vulnerability that allows address bar spoofing in Apple Safari.
To address CVE-2016-4751, update Apple Safari to version 10 or later.
CVE-2016-4751 affects all users of Apple Safari versions prior to 10.
CVE-2016-4751 is associated with a remote spoofing attack that can mislead users about the URL displayed.
Versions of Safari prior to 10, including all versions up to and including 9.1.3, are vulnerable to CVE-2016-4751.