Security Advisory

CVE-2007-3514

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2007-07-03 10:00:00
Last updated 2024-08-07 14:21:36
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Cross-domain vulnerability in Apple Safari for Windows 3.0.2 allows remote attackers to bypass the Same Origin Policy and access restricted information from other domains via JavaScript that overwrites the document variable and statically sets the document.domain attribute to a file:// location, a different vector than CVE-2007-3482.