VDB
CVE-2005-2272
CVE-2005-2272
PUBLISHED
CVSS 2.5999999046325684 LOW
Safari version 2.0 (412) does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin Spoofing Vulnerability."
EPSS 1.85% · 78.3th percentile
Risk Scores
CVSS 2.0
2.5999999046325684
EPSS Score
1.85%
78.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| apple | safari | 2.0 |
| n/a | n/a | n/a |
Timeline
- Jul 13, 2005 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 21, 2022 EPSS Score
- Jul 13, 2022 EPSS Score
- Sep 5, 2022 EPSS Score
- Dec 21, 2022 EPSS Score
- Feb 12, 2023 EPSS Score
- Apr 6, 2023 EPSS Score
- May 29, 2023 EPSS Score
- Jul 21, 2023 EPSS Score
- Sep 12, 2023 EPSS Score
References
- http://secunia.com/secunia_research/2005-12/advisory/ url
- 15474 third-party-advisory
- mozilla-javascript-dialog-box-spoofing(21070) vdb
- http://secunia.com/multiple_browsers_dialog_origin_vulnerability_test/ url
- https://nvd.nist.gov/vuln/detail/CVE-2005-2272 advisory
- http://docs.info.apple.com/article.html?artnum=302847 url
- http://secunia.com/multiple_browsers_dialog_origin_vulnerability_test url
- http://secunia.com/secunia_research/2005-12/advisory url
- http://secunia.com/advisories/17813 technical
- http://securitytracker.com/id?1015294 technical
- http://www.vupen.com/english/advisories/2005/2659 technical
- http://www.osvdb.org/17397 technical
- http://www.securityfocus.com/bid/14011 technical