{"api_version":"1","generated_at":"2026-07-23T10:15:22+00:00","cve":"CVE-2007-2401","urls":{"html":"https://cve.report/CVE-2007-2401","api":"https://cve.report/api/cve/CVE-2007-2401.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-2401","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-2401"},"summary":{"title":"CVE-2007-2401","description":"CRLF injection vulnerability in WebCore in Apple Mac OS X 10.3.9, 10.4.9 and later, and iPhone before 1.0.1, allows remote attackers to inject arbitrary HTTP headers via LF characters in an XMLHttpRequest request, which are not filtered when serializing headers via the setRequestHeader function.  NOTE: this issue can be leveraged for cross-site scripting (XSS) attacks.","state":"PUBLISHED","assigner":"mitre","published_at":"2007-06-25 19:30:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["CWE-79","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"4.3","severity":"","vector":"AV:N/AC:M/Au:N/C:N/I:P/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:N/I:P/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"}}],"references":[{"url":"http://docs.info.apple.com/article.html?artnum=305759","name":"http://docs.info.apple.com/article.html?artnum=305759","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"About Security Update 2007-006","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35017","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35017","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/26287","name":"http://secunia.com/advisories/26287","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Apple iPhone Multiple Vulnerabilities - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securitytracker.com/id?1018281","name":"http://www.securitytracker.com/id?1018281","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"SecurityTracker.com Archives - Mac OS X WebKit and WebCore Bugs Permit Cross-Domain Scripting Attacks and Remote Code Execution","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/2296","name":"http://www.vupen.com/english/advisories/2007/2296","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.westpoint.ltd.uk/advisories/wp-07-0002.txt","name":"http://www.westpoint.ltd.uk/advisories/wp-07-0002.txt","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"","mime":"text/plain","httpstatus":"200","archivestatus":"200"},{"url":"http://osvdb.org/36449","name":"http://osvdb.org/36449","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://www.securityfocus.com/archive/1/472198/100/0/threaded","name":"http://www.securityfocus.com/archive/1/472198/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.apple.com/archives/Security-announce/2007/Jun/msg00003.html","name":"http://lists.apple.com/archives/Security-announce/2007/Jun/msg00003.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"APPLE-SA-2007-06-22 Security Update 2007-006","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.kb.cert.org/vuls/id/845708","name":"http://www.kb.cert.org/vuls/id/845708","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"],"title":"US-CERT Vulnerability Note VU#845708","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/2316","name":"http://www.vupen.com/english/advisories/2007/2316","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/2731","name":"http://www.vupen.com/english/advisories/2007/2731","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/25786","name":"http://secunia.com/advisories/25786","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"Apple Mac OS X Security Update for Two Vulnerabilities - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/24598","name":"http://www.securityfocus.com/bid/24598","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"Apple WebCore XMLHTTPRequest Cross-Site Scripting Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://docs.info.apple.com/article.html?artnum=306173","name":"http://docs.info.apple.com/article.html?artnum=306173","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"About the security content of iPhone v1.0.1 Update","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-2401","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-2401","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"2401","vulnerable":"0","versionEndIncluding":"1.0","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"2401","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"mac_os_x","cpe6":"10.3.9","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"2401","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"mac_os_x","cpe6":"10.4.9","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"2401","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"mac_os_x_server","cpe6":"10.3.9","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"2401","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"mac_os_x_server","cpe6":"10.4.9","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T13:33:28.923Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"ADV-2007-2316","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/2316"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://docs.info.apple.com/article.html?artnum=306173"},{"name":"macos-xmlhttprequest-header-injection(35017)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35017"},{"name":"APPLE-SA-2007-06-22","tags":["vendor-advisory","x_refsource_APPLE","x_transferred"],"url":"http://lists.apple.com/archives/Security-announce/2007/Jun/msg00003.html"},{"name":"25786","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/25786"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.westpoint.ltd.uk/advisories/wp-07-0002.txt"},{"name":"26287","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/26287"},{"name":"20070625 Safari XMLHttpRequest HTTP header injection","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/472198/100/0/threaded"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://docs.info.apple.com/article.html?artnum=305759"},{"name":"24598","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/24598"},{"name":"ADV-2007-2731","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/2731"},{"name":"36449","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://osvdb.org/36449"},{"name":"1018281","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id?1018281"},{"name":"ADV-2007-2296","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/2296"},{"name":"VU#845708","tags":["third-party-advisory","x_refsource_CERT-VN","x_transferred"],"url":"http://www.kb.cert.org/vuls/id/845708"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-06-22T00:00:00.000Z","descriptions":[{"lang":"en","value":"CRLF injection vulnerability in WebCore in Apple Mac OS X 10.3.9, 10.4.9 and later, and iPhone before 1.0.1, allows remote attackers to inject arbitrary HTTP headers via LF characters in an XMLHttpRequest request, which are not filtered when serializing headers via the setRequestHeader function.  NOTE: this issue can be leveraged for cross-site scripting (XSS) attacks."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-16T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"ADV-2007-2316","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/2316"},{"tags":["x_refsource_CONFIRM"],"url":"http://docs.info.apple.com/article.html?artnum=306173"},{"name":"macos-xmlhttprequest-header-injection(35017)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35017"},{"name":"APPLE-SA-2007-06-22","tags":["vendor-advisory","x_refsource_APPLE"],"url":"http://lists.apple.com/archives/Security-announce/2007/Jun/msg00003.html"},{"name":"25786","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/25786"},{"tags":["x_refsource_MISC"],"url":"http://www.westpoint.ltd.uk/advisories/wp-07-0002.txt"},{"name":"26287","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/26287"},{"name":"20070625 Safari XMLHttpRequest HTTP header injection","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/472198/100/0/threaded"},{"tags":["x_refsource_CONFIRM"],"url":"http://docs.info.apple.com/article.html?artnum=305759"},{"name":"24598","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/24598"},{"name":"ADV-2007-2731","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/2731"},{"name":"36449","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://osvdb.org/36449"},{"name":"1018281","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id?1018281"},{"name":"ADV-2007-2296","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/2296"},{"name":"VU#845708","tags":["third-party-advisory","x_refsource_CERT-VN"],"url":"http://www.kb.cert.org/vuls/id/845708"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-2401","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"CRLF injection vulnerability in WebCore in Apple Mac OS X 10.3.9, 10.4.9 and later, and iPhone before 1.0.1, allows remote attackers to inject arbitrary HTTP headers via LF characters in an XMLHttpRequest request, which are not filtered when serializing headers via the setRequestHeader function.  NOTE: this issue can be leveraged for cross-site scripting (XSS) attacks."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"ADV-2007-2316","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/2316"},{"name":"http://docs.info.apple.com/article.html?artnum=306173","refsource":"CONFIRM","url":"http://docs.info.apple.com/article.html?artnum=306173"},{"name":"macos-xmlhttprequest-header-injection(35017)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/35017"},{"name":"APPLE-SA-2007-06-22","refsource":"APPLE","url":"http://lists.apple.com/archives/Security-announce/2007/Jun/msg00003.html"},{"name":"25786","refsource":"SECUNIA","url":"http://secunia.com/advisories/25786"},{"name":"http://www.westpoint.ltd.uk/advisories/wp-07-0002.txt","refsource":"MISC","url":"http://www.westpoint.ltd.uk/advisories/wp-07-0002.txt"},{"name":"26287","refsource":"SECUNIA","url":"http://secunia.com/advisories/26287"},{"name":"20070625 Safari XMLHttpRequest HTTP header injection","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/472198/100/0/threaded"},{"name":"http://docs.info.apple.com/article.html?artnum=305759","refsource":"CONFIRM","url":"http://docs.info.apple.com/article.html?artnum=305759"},{"name":"24598","refsource":"BID","url":"http://www.securityfocus.com/bid/24598"},{"name":"ADV-2007-2731","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/2731"},{"name":"36449","refsource":"OSVDB","url":"http://osvdb.org/36449"},{"name":"1018281","refsource":"SECTRACK","url":"http://www.securitytracker.com/id?1018281"},{"name":"ADV-2007-2296","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/2296"},{"name":"VU#845708","refsource":"CERT-VN","url":"http://www.kb.cert.org/vuls/id/845708"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-2401","datePublished":"2007-06-25T19:00:00.000Z","dateReserved":"2007-04-30T00:00:00.000Z","dateUpdated":"2024-08-07T13:33:28.923Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2007-06-25 19:30:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["CWE-79","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:N/I:P/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*","versionEndIncluding":"1.0","matchCriteriaId":"6095A36B-BE17-4F65-81E6-2CAFACDF9577"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:apple:mac_os_x:10.3.9:*:*:*:*:*:*:*","matchCriteriaId":"DC6931D5-DE7E-41F6-ADDC-AB5A8A167F69"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:mac_os_x:10.4.9:*:*:*:*:*:*:*","matchCriteriaId":"786BB737-EA99-4EC6-B742-0C35BF2453F9"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:mac_os_x_server:10.3.9:*:*:*:*:*:*:*","matchCriteriaId":"8923EE1A-DD48-4EC8-8698-A33093FD709C"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:mac_os_x_server:10.4.9:*:*:*:*:*:*:*","matchCriteriaId":"3029892E-1375-4F40-83D3-A51BDC4E9840"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"2401","Ordinal":"1","Title":"CVE-2007-2401","CVE":"CVE-2007-2401","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"2401","Ordinal":"1","NoteData":"CRLF injection vulnerability in WebCore in Apple Mac OS X 10.3.9, 10.4.9 and later, and iPhone before 1.0.1, allows remote attackers to inject arbitrary HTTP headers via LF characters in an XMLHttpRequest request, which are not filtered when serializing headers via the setRequestHeader function.  NOTE: this issue can be leveraged for cross-site scripting (XSS) attacks.","Type":"Description","Title":"CVE-2007-2401"},{"CveYear":"2007","CveId":"2401","Ordinal":"2","NoteData":"2007-06-25","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"2401","Ordinal":"3","NoteData":"2018-10-16","Type":"Other","Title":"Modified"}]}}}