CVE-2007-2408

WebKit in Apple Safari 3 Beta before Update 3.0.3 does not properly recognize an unchecked "Enable Java" setting, which allows remote attackers to execute Java applets via a crafted web page.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:safari:3.0.1:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:3.0.1:*:windows:*:*:*:*:*
cpe:2.3:a:apple:safari:3.0.2:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:3.0.2:*:windows:*:*:*:*:*

History

21 Nov 2024, 00:30

Type Values Removed Values Added
References () http://docs.info.apple.com/article.html?artnum=306174 - Patch () http://docs.info.apple.com/article.html?artnum=306174 - Patch
References () http://isc.sans.org/diary.html?storyid=3214 - () http://isc.sans.org/diary.html?storyid=3214 -
References () http://www.securityfocus.com/bid/25157 - Patch () http://www.securityfocus.com/bid/25157 - Patch
References () http://www.vupen.com/english/advisories/2007/2730 - () http://www.vupen.com/english/advisories/2007/2730 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/35714 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/35714 -

Information

Published : 2007-08-03 20:17

Updated : 2025-04-09 00:30


NVD link : CVE-2007-2408

Mitre link : CVE-2007-2408

CVE.ORG link : CVE-2007-2408


JSON object : View

Products Affected

apple

  • safari
CWE
CWE-20

Improper Input Validation