CVE Published: 16/11/2010 |
CVE Updated: 16/09/2024 |
CVE Year: 2010 Source: apple |
Vendor: n/a |
Product: n/a Status : PUBLISHED
CVE-2010-3796 Description
Safari RSS in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 does not block Java applets in an RSS feed, which allows remote attackers to obtain sensitive information via a feed: URL containing an applet that performs DOM modifications.