CVE-2007-3186

Apple Safari Beta 3.0.1 for Windows allows remote attackers to execute arbitrary commands via shell metacharacters in a URI in the SRC of an IFRAME, as demonstrated using a gopher URI.
Configurations

Configuration 1

cpe:2.3:a:apple:safari:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:3.0.1:*:windows:*:*:*:*:*
cpe:2.3:a:apple:safari:2.0.3:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:2.0:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:2.0.4:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:*:*:windows:*:*:*:*:*
cpe:2.3:a:apple:safari:3.0:*:*:*:*:*:*:*

Information

Published : 2007-06-12 10:30

Updated : 2018-10-16 04:47


NVD link : CVE-2007-3186

Mitre link : CVE-2007-3186

Products Affected
No products.
CWE