This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:apple:safari:3.0.3::mac
Detail
VendorAppleFirst view 2008-03-18
ProductSafariLast view2016-05-20
Version3.0.3TypeApplication
Editionmac 
Language 
Update 
 
CPE Productcpe:/a:apple:safari

Activity : Overall

Related : CVE

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
 DateAlertAccess VectorAccess ComplexityAuthentication
6.82016-05-20CVE-2016-1859NetworkMediumNone Requ...
4.32016-05-20CVE-2016-1858NetworkMediumNone Requ...
6.82016-05-20CVE-2016-1857NetworkMediumNone Requ...
6.82016-05-20CVE-2016-1856NetworkMediumNone Requ...
6.82016-05-20CVE-2016-1855NetworkMediumNone Requ...
Hide | Show 20 More...
 DateAlertAccess VectorAccess ComplexityAuthentication
6.82016-05-20CVE-2016-1854NetworkMediumNone Requ...
2.12016-05-20CVE-2016-1849LocalLowNone Requ...
5.82016-03-23CVE-2016-1786NetworkMediumNone Requ...
4.32016-03-23CVE-2016-1785NetworkMediumNone Requ...
4.32016-03-23CVE-2016-1784NetworkMediumNone Requ...
9.32016-03-23CVE-2016-1783NetworkMediumNone Requ...
4.32016-03-23CVE-2016-1782NetworkMediumNone Requ...
4.32016-03-23CVE-2016-1781NetworkMediumNone Requ...
4.32016-03-23CVE-2016-1779NetworkMediumNone Requ...
9.32016-03-23CVE-2016-1778NetworkMediumNone Requ...
4.32016-03-23CVE-2016-1772NetworkMediumNone Requ...
7.12016-03-23CVE-2016-1771NetworkMediumNone Requ...
102016-03-23CVE-2016-1762NetworkLowNone Requ...
4.32016-03-23CVE-2009-2197NetworkMediumNone Requ...
4.32016-02-01CVE-2016-1728NetworkMediumNone Requ...
9.32016-02-01CVE-2016-1727NetworkMediumNone Requ...
9.32016-02-01CVE-2016-1726NetworkMediumNone Requ...
9.32016-02-01CVE-2016-1725NetworkMediumNone Requ...
9.32016-02-01CVE-2016-1724NetworkMediumNone Requ...

CWE : Common Weakness Enumeration

%idName
48% (176)CWE-119Failure to Constrain Operations within the Bounds of a Memory Buffer
12% (47)CWE-399Resource Management Errors
10% (38)CWE-200Information Exposure
7% (27)CWE-20Improper Input Validation
4% (18)CWE-264Permissions, Privileges, and Access Controls
Hide | Show 14 More...
%idName
4% (17)CWE-79Failure to Preserve Web Page Structure ('Cross-site Scripting')
2% (9)CWE-94Failure to Control Generation of Code ('Code Injection')
1% (5)CWE-310Cryptographic Issues
1% (5)CWE-254Security Features
1% (4)CWE-287Improper Authentication
1% (4)CWE-189Numeric Errors
0% (3)CWE-255Credentials Management
0% (3)CWE-19Data Handling
0% (2)CWE-362Race Condition
0% (2)CWE-284Access Control (Authorization) Issues
0% (2)CWE-17Code
0% (1)CWE-352Cross-Site Request Forgery (CSRF)
0% (1)CWE-22Improper Limitation of a Pathname to a Restricted Directory ('Path ...
0% (1)CWE-16Configuration

Oval Markup Language : Definitions

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
OvalIDName
oval:org.mitre.oval:def:24080WebKit vulnerability in Apple Safari before 6.0 does not properly handle drag...
oval:org.mitre.oval:def:23787WebKit vulnerability in Apple Safari before 6.0 allows remote attackers to ex...
oval:org.mitre.oval:def:6810WebKit Right-to-Left Displayed Text Handling Memory Corruption Vulnerability
oval:org.mitre.oval:def:24187WebKit vulnerability in Apple Safari before 6.0 allows remote attackers to ex...
oval:org.mitre.oval:def:24264WebKit vulnerability in Apple Safari before 6.0 allows remote attackers to ex...
Hide | Show 20 More...
idName
oval:org.mitre.oval:def:9484WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS...
oval:org.mitre.oval:def:13862USN-822-1 -- kde4libs, kdelibs vulnerabilities
oval:org.mitre.oval:def:22057ELSA-2009:1127: kdelibs security update (Critical)
oval:org.mitre.oval:def:29301RHSA-2009:1127 -- kdelibs security update (Critical)
oval:org.mitre.oval:def:7403WebKit HTML Elements Callback Use-After-Free Error Remote Code Execution Vuln...
oval:org.mitre.oval:def:24365WebKit vulnerability in Apple Safari before 6.0 allows remote attackers to ex...
oval:org.mitre.oval:def:14098WebKit, as used in Apple Safari 5.1.1 and earlier and Google Chrome 15 and ea...
oval:org.mitre.oval:def:24246WebKit vulnerability in Apple Safari before 6.0 allows remote attackers to ex...
oval:org.mitre.oval:def:24147WebKit vulnerability in Apple Safari before 6.0 allows remote attackers to ex...
oval:org.mitre.oval:def:24281WebKit vulnerability in Apple Safari before 6.0 allows remote attackers to ex...
oval:org.mitre.oval:def:23935WebKit vulnerability in Apple Safari before 6.0 allows remote attackers to ex...
oval:org.mitre.oval:def:13253USN-1016-1 -- libxml2 vulnerability
oval:org.mitre.oval:def:12709DSA-2128-1 libxml2 -- invalid memory access
oval:org.mitre.oval:def:12148Vulnerability in libxml2 in Google Chrome before 7.0.517.44
oval:org.mitre.oval:def:24247WebKit vulnerability in Apple Safari before 6.0 allows remote attackers to ex...
oval:org.mitre.oval:def:24305Incomplete blacklist vulnerability in WebKit in Apple Safari before 6.0 allow...
oval:org.mitre.oval:def:6885Apple Safari BMP Image Uninitialized Memory Information Disclosure Vulnerability
oval:org.mitre.oval:def:23769WebKit vulnerability in Apple Safari before 6.0 allows remote attackers to ex...
oval:org.mitre.oval:def:24452WebKit vulnerability in Apple Safari before 6.0 allows remote attackers to ex...
oval:org.mitre.oval:def:12138Google Chrome Focus Handling Stale Pointer Remote DoS

SAINT Exploits

DescriptionLink
Safari WebKit floating point number buffer overflowMore info here

Open Source Vulnerability Database (OSVDB)

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
idDescription
77621Google Chrome WebKit Cache Objects Image Handling Browsing History Disclosure
77618Apple Safari WebKit Cache Objects Image Handling Browsing History Disclosure
76391Apple Safari WebKit Private Browsing Mode Cookie Block Bypass
76390Apple Safari SSL Certificate Handling Unitialized Memory Access Remote Code E...
76389Apple Safari file:// URL Handling Remote Code Execution
Hide | Show 20 More...
idDescription
76388Apple Safari safari-extension:// URL Handling Traversal Remote Code Execution
75254Apple Safari / iOS WebKit Attr.style Accessor Parsing Same Origin Policy Bypa...
75253Apple Safari / iOS WebKit HTTP Basic Authentication Authorization HTTP Header...
75013Apple Safari / iOS WebKit Cached Resources Cache Poisoning Remote DoS
74016Apple Safari WebKit Unspecified Memory Corruption (2011-1797)
73995Apple Safari AutoFill Web Forms Address Book Information Disclosure
73994Apple Safari libxml XML Data Handling Off-by-one Overflow
73993Apple Safari WebKit Use-after-free TIFF Image Handling Remote Code Execution
73992Apple Safari ImageIO CCITT Group 4 Encoded TIFF Image Handling Overflow
73991Apple Safari CFNetwork SSL Certificate Validation Weakness
73990Apple Safari CFNetwork NTLM Authentication Credential Reflection Remote Code ...
73989Apple Safari CFNetwork text/plain Content Unspecified XSS
72690Apple Multiple Products Webkit WBR Tag Children Addition/Removal Use-after-f...
72263Google Chrome Broken Node Parentage DOM Tree Corruption
69205libxml2 Crafted XML File XPath Axis Traversal DoS
67865Google Chrome Focus Handling Stale Pointer Memory Corruption
67462Google Chrome MIME Type Processing Weakness Memory Corruption DoS
65339Apple Safari URL User Information Handling Spoofing Weakness
65338Apple Safari WebKit IBM1147 Character Set Handling Arbitrary Code Execution
65331Apple Safari PDF Handling Use-after-free Arbitrary Code Execution

Milw0rm Exploits

idDescription
2009-06-09Apple Safari <= 3.2.x (XXE attack) Local File Theft Vulnerability

ExploitDB Exploits

idDescription
28081Apple Safari 6.0.1 for iOS 6.0 and OS X 10.7/8 - Heap Buffer Overflow
22406Konqueror 4.7.3 Memory Corruption
17986Apple Safari file:// Arbitrary Code Execution

OpenVAS Exploits

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
idDescription
2012-11-19Name : Fedora Update for kdelibs FEDORA-2012-17388
File : nvt/gb_fedora_2012_17388_kdelibs_fc16.nasl
2012-11-02Name : Apple Safari Multiple Vulnerabilities (APPLE-SA-2012-09-19-3)
File : nvt/gb_apple_safari_mult_vuln_nov12_macosx.nasl
2012-10-26Name : Ubuntu Update for webkit USN-1617-1
File : nvt/gb_ubuntu_USN_1617_1.nasl
2012-10-03Name : Fedora Update for libxml2 FEDORA-2012-13824
File : nvt/gb_fedora_2012_13824_libxml2_fc16.nasl
2012-10-01Name : Apple Safari Multiple Vulnerabilities - Oct 2012 (Mac OS X)
File : nvt/gb_apple_safari_mult_vuln_oct12_macosx.nasl
Hide | Show 20 More...
idDescription
2012-09-27Name : Fedora Update for libxml2 FEDORA-2012-13820
File : nvt/gb_fedora_2012_13820_libxml2_fc17.nasl
2012-09-17Name : Apple iTunes Multiple Vulnerabilities - Sep 12 (Windows)
File : nvt/gb_apple_itunes_mult_vuln_sep12_win.nasl
2012-08-09Name : Ubuntu Update for webkit USN-1524-1
File : nvt/gb_ubuntu_USN_1524_1.nasl
2012-08-01Name : Apple Safari Multiple Vulnerabilities - Aug 2012 (Windows)
File : nvt/gb_apple_safari_mult_vuln_aug12_win.nasl
2012-07-30Name : CentOS Update for libxml2 CESA-2012:0016 centos4
File : nvt/gb_CESA-2012_0016_libxml2_centos4.nasl
2012-07-30Name : CentOS Update for libxml2 CESA-2012:0017 centos5
File : nvt/gb_CESA-2012_0017_libxml2_centos5.nasl
2012-07-30Name : Apple Safari Multiple Vulnerabilities - July 2012 (Mac OS X)
File : nvt/gb_apple_safari_mult_vuln_jul12_macosx.nasl
2012-07-13Name : VMSA-2012-0012 VMware ESXi update addresses several security issues.
File : nvt/gb_VMSA-2012-0012.nasl
2012-07-09Name : RedHat Update for libxml2 RHSA-2011:1749-03
File : nvt/gb_RHSA-2011_1749-03_libxml2.nasl
2012-06-05Name : RedHat Update for webkitgtk RHSA-2011:0177-01
File : nvt/gb_RHSA-2011_0177-01_webkitgtk.nasl
2012-05-24Name : Apple Safari Multiple Vulnerabilities - Oct 2011 (Windows)
File : nvt/secpod_apple_safari_mult_vuln_win_oct11.nasl
2012-05-18Name : Mac OS X Multiple Vulnerabilities (2012-002)
File : nvt/gb_macosx_su12-002.nasl
2012-05-18Name : Apple Safari Webkit Multiple Vulnerabilities - May 12 (Mac OS X)
File : nvt/gb_apple_safari_webkit_mult_vuln_macosx_may12.nasl
2012-05-18Name : Apple Safari Webkit Multiple Vulnerabilities - May 12 (Windows)
File : nvt/gb_apple_safari_webkit_mult_vuln_win_may12.nasl
2012-04-02Name : Fedora Update for kdelibs FEDORA-2011-16151
File : nvt/gb_fedora_2011_16151_kdelibs_fc16.nasl
2012-03-29Name : Fedora Update for kdelibs FEDORA-2012-3483
File : nvt/gb_fedora_2012_3483_kdelibs_fc15.nasl
2012-03-13Name : Apple Safari Webkit Multiple Vulnerabilities - March12 (Mac OS X)
File : nvt/gb_apple_safari_webkit_mult_vuln_mar12_macosx.nasl
2012-03-13Name : Apple Safari Webkit Multiple Vulnerabilities - March12 (Win)
File : nvt/gb_apple_safari_webkit_mult_vuln_mar12_win.nasl
2012-02-12Name : Gentoo Security Advisory GLSA 201110-26 (libxml2)
File : nvt/glsa_201110_26.nasl
2012-02-11Name : Debian Security Advisory DSA 2394-1 (libxml2)
File : nvt/deb_2394_1.nasl

Information Assurance Vulnerability Management (IAVM)

idDescription
2015-A-0222Multiple Security Vulnerabilities in Apple iOS
Severity : Category I - VMSKEY : V0061471
2015-A-0199Multiple Vulnerabilities in Apple Mac OS X
Severity : Category I - VMSKEY : V0061337
2014-B-0083Multiple Vulnerabilities in Apple iOS
Severity : Category I - VMSKEY : V0052903
2014-B-0048Multiple Security Vulnerabilities in Apple iOS
Severity : Category I - VMSKEY : V0050015
2014-B-0024Multiple Security Vulnerabilities in Apple iOS
Severity : Category I - VMSKEY : V0046157
Hide | Show 2 More...
idDescription
2012-A-0153Multiple Vulnerabilities in VMware ESX 4.0 and ESXi 4.0
Severity : Category I - VMSKEY : V0033884
2012-A-0073Multiple Vulnerabilities in VMware ESXi 4.1 and ESX 4.1
Severity : Category I - VMSKEY : V0032171

Snort® IPS/IDS

DateDescription
2015-08-04Apple Safari URI spoofing attempt
RuleID : 35045 - Type : BROWSER-WEBKIT - Revision : 1
2015-08-04Apple Safari URI spoofing attempt
RuleID : 35044 - Type : BROWSER-WEBKIT - Revision : 1
2014-01-10WebKit button column memory corruption attempt
RuleID : 23805 - Type : BROWSER-WEBKIT - Revision : 8
2014-01-10Apple Safari CSS font format corruption attempt
RuleID : 19099 - Type : BROWSER-WEBKIT - Revision : 11
2014-01-10Apple Safari Webkit CSS Charset Text transformation code execution attempt
RuleID : 19096 - Type : BROWSER-WEBKIT - Revision : 10
Hide | Show 8 More...
DateDescription
2014-01-10Apple Safari Webkit CSS Charset Text transformation code execution attempt
RuleID : 19095 - Type : BROWSER-WEBKIT - Revision : 10
2014-01-10Apple Safari Webkit floating point buffer overflow attempt
RuleID : 18295 - Type : BROWSER-WEBKIT - Revision : 4
2014-01-10Apple Safari Webkit floating point buffer overflow attempt
RuleID : 18294 - Type : BROWSER-WEBKIT - Revision : 5
2014-01-10file URI scheme attempt
RuleID : 16642 - Type : POLICY-OTHER - Revision : 11
2014-01-10Apple Safari image use after reparent attempt
RuleID : 16632 - Type : BROWSER-WEBKIT - Revision : 12
2014-01-10Apple Safari image use after remove attempt
RuleID : 16631 - Type : BROWSER-WEBKIT - Revision : 11
2014-01-10Apple Safari inline text box use after free attempt
RuleID : 16492 - Type : BROWSER-WEBKIT - Revision : 12
2014-01-10Apple Safari Webkit floating point buffer overflow attempt
RuleID : 16145 - Type : BROWSER-WEBKIT - Revision : 8

Nessus® Vulnerability Scanner

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
idDescription
2016-05-24Name : The remote device is affected by multiple vulnerabilities.
File : appletv_9_2_1.nasl - Type : ACT_GATHER_INFO
2016-05-18Name : The remote host has a web browser installed that is affected by multiple vuln...
File : macosx_Safari9_1_1.nasl - Type : ACT_GATHER_INFO
2016-04-04Name : The remote device is affected by multiple vulnerabilities.
File : appletv_7_2_1.nasl - Type : ACT_GATHER_INFO
2016-04-01Name : The remote device is affected by multiple vulnerabilities.
File : appletv_9_2.nasl - Type : ACT_GATHER_INFO
2016-04-01Name : The remote Fedora host is missing a security update.
File : fedora_2016-9ec1850fff.nasl - Type : ACT_GATHER_INFO
Hide | Show 20 More...
idDescription
2016-04-01Name : The remote openSUSE host is missing a security update.
File : openSUSE-2016-412.nasl - Type : ACT_GATHER_INFO
2016-03-28Name : The remote Fedora host is missing a security update.
File : fedora_2016-68b43a4e0d.nasl - Type : ACT_GATHER_INFO
2016-03-28Name : The remote Fedora host is missing a security update.
File : fedora_2016-a4fcb02d6b.nasl - Type : ACT_GATHER_INFO
2016-03-28Name : The remote Fedora host is missing a security update.
File : fedora_2016-fde7ffcb77.nasl - Type : ACT_GATHER_INFO
2016-03-23Name : The remote Fedora host is missing a security update.
File : fedora_2016-5d6d75dbea.nasl - Type : ACT_GATHER_INFO
2016-03-23Name : The remote Fedora host is missing a security update.
File : fedora_2016-7eb48a78dc.nasl - Type : ACT_GATHER_INFO
2016-03-22Name : The remote Mac OS X host is affected by multiple vulnerabilities.
File : macosx_10_11_4.nasl - Type : ACT_GATHER_INFO
2016-03-22Name : The remote host is missing a Mac OS X update that fixes multiple vulnerabilit...
File : macosx_SecUpd2016-002.nasl - Type : ACT_GATHER_INFO
2016-03-22Name : The remote Ubuntu host is missing one or more security-related patches.
File : ubuntu_USN-2937-1.nasl - Type : ACT_GATHER_INFO
2016-03-21Name : The remote Fedora host is missing a security update.
File : fedora_2016-1a7f7ffb58.nasl - Type : ACT_GATHER_INFO
2016-03-16Name : The remote openSUSE host is missing a security update.
File : openSUSE-2016-340.nasl - Type : ACT_GATHER_INFO
2016-03-04Name : The remote Fedora host is missing a security update.
File : fedora_2016-d132dbb529.nasl - Type : ACT_GATHER_INFO
2016-03-04Name : The remote Fedora host is missing a security update.
File : fedora_2016-ec05afb364.nasl - Type : ACT_GATHER_INFO
2016-03-04Name : The remote Fedora host is missing a security update.
File : fedora_2016-143a48536c.nasl - Type : ACT_GATHER_INFO
2016-03-03Name : The remote VMware ESX host is missing a security-related patch.
File : vmware_VMSA-2012-0008_remote.nasl - Type : ACT_GATHER_INFO
2016-02-29Name : The remote VMware ESX / ESXi host is missing a security-related patch.
File : vmware_VMSA-2012-0012_remote.nasl - Type : ACT_GATHER_INFO
2016-02-05Name : The remote host has a web browser installed that is affected by multiple vuln...
File : macosx_Safari9_0_3.nasl - Type : ACT_GATHER_INFO
2016-01-27Name : The remote device is affected by multiple vulnerabilities.
File : appletv_9_1_1.nasl - Type : ACT_GATHER_INFO
2016-01-27Name : The remote Gentoo host is missing one or more security-related patches.
File : gentoo_GLSA-201601-02.nasl - Type : ACT_GATHER_INFO
2015-12-15Name : The remote host contains an application that is affected by multiple vulnerab...
File : itunes_12_3_2.nasl - Type : ACT_GATHER_INFO