HIGH
Safari 1.x allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability, a different vulnerability than CVE-2004-1122
Published Dec 22, 2004
7.5
HIGHCVSS 2.0
EPSS 2.36%
Description
Affected products
Remediation
Metrics
References (5)
Change history (0)
No recorded changes yet.