CVE-2015-3727 PUBLISHED

WebKit in Apple Safari before 6.2.7, 7.x before 7.1.7, and 8.x before 8.0.7, as used in Apple iOS before 8.4 and other products, does not properly restrict rename operations on WebSQL tables, which allows remote attackers to access an arbitrary web site's database via a crafted web site.

EPSS 0.94% · 76.1th percentile

Risk Scores

EPSS Score
0.94%
76.1th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSwebkitgtk0, 2.4.9-2ubuntu2
Ubuntu:16.04:LTSqtwebkit-source2.3.2-0ubuntu11, 0, 2.3.2-0ubuntu10
Ubuntu:16.04:LTSqtwebkit-opensource-src0, 5.4.2+dfsg-1ubuntu2.1, *
Ubuntu:14.04:LTSwebkitgtk2.4.0-1ubuntu2, 2.4.2-1ubuntu0.1, 2.4.3-1ubuntu2

Timeline

References

Open in Interactive Console →