CVE Published: 11/03/2011 |
CVE Updated: 06/08/2024 |
CVE Year: 2011 Source: apple |
Vendor: n/a |
Product: n/a Status : PUBLISHED
CVE-2011-0166 Description
The HTML5 drag and drop functionality in WebKit in Apple Safari before 5.0.4 allows user-assisted remote attackers to bypass the Same Origin Policy and obtain sensitive information via vectors related to the dragging of content. NOTE: this might overlap CVE-2011-0778.