Security Advisory

CVE-2009-2199

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2009-08-12 19:00:00
Last updated 2024-08-07 05:44:55
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Incomplete blacklist vulnerability in WebKit in Apple Safari before 4.0.3, as used on iPhone OS before 3.1, iPhone OS before 3.1.1 for iPod touch, and other platforms, allows remote attackers to spoof domain names in URLs, and possibly conduct phishing attacks, via unspecified homoglyphs.