CVE-2013-5167 PUBLISHED CVSS 5 MEDIUM

CFNetwork in Apple Mac OS X before 10.9 does not properly support Safari's deletion of session cookies in response to a reset operation, which makes it easier for remote web servers to track users via Set-Cookie HTTP headers.

EPSS 0.26% · 48.7th percentile

Risk Scores

CVSS v2.0
5
EPSS Score
0.26%
48.7th percentile

Affected Products

VendorProductVersions
n/an/an/a
applemac_os_x0, 10.8.0, 10.8.1

Timeline

References

Open in Interactive Console →