CVE Database
/

CVE-2008-2306

Back to search

CVE-2008-2306

Published: Jun 23, 2008

Modified: Aug 7, 2024

PUBLISHED

Description

Apple Safari before 3.1.2 on Windows does not properly interpret the URLACTION_SHELL_EXECUTE_HIGHRISK Internet Explorer zone setting, which allows remote attackers to bypass intended access restrictions, and force a client system to download and execute arbitrary files.

VendorProductVersions

n/a

n/a

affected
n/a

References

VU#127185
third-party-advisory
x_refsource_CERT-VN
30775
third-party-advisory
x_refsource_SECUNIA
1020329
vdb-entry
x_refsource_SECTRACK
ADV-2008-1882
vdb-entry
x_refsource_VUPEN
29835
vdb-entry
x_refsource_BID
APPLE-SA-2008-06-19
vendor-advisory
x_refsource_APPLE

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now