← Retour aux CVEs
CVE-2012-3742
N/ADescription
Safari in Apple iOS before 6 does not properly restrict use of an unspecified Unicode character that looks similar to the https lock indicator, which allows remote attackers to spoof https connections by placing this character in the TITLE element of a web page.
Details CVE
Score CVSS v3.1N/A
Publie9/20/2012
Derniere modification4/29/2026
Sourcenvd
Observations honeypot0
Produits affectes
apple:iphone_os
Faiblesses (CWE)
CWE-264
References
http://lists.apple.com/archives/security-announce/2012/Sep/msg00003.html(product-security@apple.com)
http://osvdb.org/85632(product-security@apple.com)
http://support.apple.com/kb/HT5503(product-security@apple.com)
https://exchange.xforce.ibmcloud.com/vulnerabilities/78708(product-security@apple.com)
http://lists.apple.com/archives/security-announce/2012/Sep/msg00003.html(af854a3a-2127-422b-91ae-364da2661108)
http://osvdb.org/85632(af854a3a-2127-422b-91ae-364da2661108)
http://support.apple.com/kb/HT5503(af854a3a-2127-422b-91ae-364da2661108)
https://exchange.xforce.ibmcloud.com/vulnerabilities/78708(af854a3a-2127-422b-91ae-364da2661108)
Correlations IOC
Aucune correlation enregistree
This product uses data from the NVD API but is not endorsed or certified by the NVD.