René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

79 lines
2.5 KiB
JSON

{
"id": "CVE-2007-3514",
"sourceIdentifier": "cve@mitre.org",
"published": "2007-07-03T10:30:00.000",
"lastModified": "2012-10-30T02:52:18.780",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Cross-domain vulnerability in Apple Safari for Windows 3.0.2 allows remote attackers to bypass the Same Origin Policy and access restricted information from other domains via JavaScript that overwrites the document variable and statically sets the document.domain attribute to a file:// location, a different vector than CVE-2007-3482."
},
{
"lang": "es",
"value": "Vulnerabilidad de dominio cruzado en Apple Safari para Windows 3.0.2 permite a atacantes remotos evitar la Pol\u00edtica de Mismo Origen y acceder a informaci\u00f3n restringida de otros dominios mediante JavaScript que sobrescribe la variable document y establece el atributo document.domain estad\u00edsticamente a unalocalizaci\u00f3n file://, un vector diferente de CVE-2007-3482."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:C/I:P/A:N",
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "PARTIAL",
"availabilityImpact": "NONE",
"baseScore": 8.5
},
"baseSeverity": "HIGH",
"exploitabilityScore": 10.0,
"impactScore": 7.8,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:apple:safari:3.0.2:*:windows:*:*:*:*:*",
"matchCriteriaId": "32024B14-B4F7-466E-AEF2-0D3A7E8E1060"
}
]
}
]
}
],
"references": [
{
"url": "http://www.0x000000.com/?i=371",
"source": "cve@mitre.org"
}
]
}