CVE Vulnerabilities

CVE-2010-1413

Published: Jun 11, 2010 | Modified: Sep 19, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, sends NTLM credentials in cleartext in unspecified circumstances, which allows man-in-the-middle attackers to obtain sensitive information via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Safari Apple * 4.0.5 (including)
Safari Apple 4.0 (including) 4.0 (including)
Safari Apple 4.0.0b (including) 4.0.0b (including)
Safari Apple 4.0.1 (including) 4.0.1 (including)
Safari Apple 4.0.2 (including) 4.0.2 (including)
Safari Apple 4.0.3 (including) 4.0.3 (including)
Safari Apple 4.0.4 (including) 4.0.4 (including)
Webkit Apple * *
Chromium-browser Ubuntu devel *
Chromium-browser Ubuntu lucid *
Chromium-browser Ubuntu maverick *

References