CVE-2010-1383

Published Jul 21, 2011

Last updated 13 years ago

Overview

Description
CFNetwork in Apple Safari before 5.0.6 on Windows allows remote web servers to execute arbitrary code by replaying the NTLM credentials of a client user, related to a "credential reflection" issue.
Source
product-security@apple.com
NVD status
Analyzed

Risk scores

CVSS 2.0

Type
Primary
Base score
9.3
Impact score
10
Exploitability score
8.6
Vector string
AV:N/AC:M/Au:N/C:C/I:C/A:C

Weaknesses

nvd@nist.gov
CWE-255

Social media

Hype score
Not currently trending

Configurations