CVE-2012-0647 PUBLISHED

WebKit in Apple Safari before 5.1.4 does not properly handle redirects in conjunction with HTTP authentication, which might allow remote web servers to capture credentials by logging the Authorization HTTP header.

EPSS 0.28% · 50.9th percentile

Risk Scores

EPSS Score
0.28%
50.9th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSqtwebkit-source0, 2.3.2-0ubuntu10, 2.3.2-0ubuntu11

Timeline

References

Open in Interactive Console →