Security Advisory

CVE-2011-0217

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2011-07-21 23:00:00
Last updated 2024-09-17 01:25:52
Assigner apple
CVSS score not scored
State PUBLISHED

Description

Apple Safari before 5.0.6 provides AutoFill information to scripts that execute before HTML form submission, which allows remote attackers to obtain Address Book information via a crafted form, as demonstrated by a form that includes non-visible fields.