Apple Safari Unspecified Frame Events Same-Origin Policy Bypass Vulnerability

Apple Safari is prone to a vulnerability that lets attackers bypass the same-origin policy.

Attackers can exploit this issue to execute arbitrary JavaScript in the context of another domain.

NOTE: This issue may be related to BID 25851 - Apple iPhone Safari Browser Frame Events Same-Origin Policy Bypass Vulnerability (CVE-2007-3761).


 

Privacy Statement
Copyright 2010, SecurityFocus