Apple Safari Window.setTimeout Variant Content Spoofing Vulnerability
BID:28405
Info
Apple Safari Window.setTimeout Variant Content Spoofing Vulnerability
| Bugtraq ID: | 28405 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 22 2008 12:00AM |
| Updated: | Mar 24 2008 09:50PM |
| Credit: | Juan Pablo Lopez Yacubian |
| Vulnerable: |
Apple Safari 3.1 |
| Not Vulnerable: | |
Discussion
Apple Safari Window.setTimeout Variant Content Spoofing Vulnerability
Apple Safari is prone to a content-spoofing vulnerability that allows attackers to populate a vulnerable Safari browser window with arbitrary malicious content. During such an attack, the URL and window title will display the intended site, while the body of the webpage is spoofed.
Safari 3.1 running on Microsoft Windows is reported vulnerable.
NOTE: This issue may be related to the vulnerability discussed in BID 24457 (Apple Safari for Windows Window.setTimeout Content Spoofing Vulnerability).
Apple Safari is prone to a content-spoofing vulnerability that allows attackers to populate a vulnerable Safari browser window with arbitrary malicious content. During such an attack, the URL and window title will display the intended site, while the body of the webpage is spoofed.
Safari 3.1 running on Microsoft Windows is reported vulnerable.
NOTE: This issue may be related to the vulnerability discussed in BID 24457 (Apple Safari for Windows Window.setTimeout Content Spoofing Vulnerability).
Exploit / POC
Apple Safari Window.setTimeout Variant Content Spoofing Vulnerability
To exploit this issue, an attacker must trick a victim into visiting a malicious web page.
The following example page is available:
To exploit this issue, an attacker must trick a victim into visiting a malicious web page.
The following example page is available:
Solution / Fix
Apple Safari Window.setTimeout Variant Content Spoofing Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Apple Safari Window.setTimeout Variant Content Spoofing Vulnerability
References:
References: