CVE Vulnerabilities

CVE-2015-3727

Published: Jul 03, 2015 | Modified: Dec 28, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

WebKit in Apple Safari before 6.2.7, 7.x before 7.1.7, and 8.x before 8.0.7, as used in Apple iOS before 8.4 and other products, does not properly restrict rename operations on WebSQL tables, which allows remote attackers to access an arbitrary web sites database via a crafted web site.

Affected Software

Name Vendor Start Version End Version
Safari Apple 7.0.1 7.0.1
Safari Apple 8.0.2 8.0.2
Safari Apple 8.0.1 8.0.1
Safari Apple 7.0.3 7.0.3
Safari Apple 7.0.4 7.0.4
Safari Apple 7.1.0 7.1.0
Safari Apple 7.1.6 7.1.6
Safari Apple 8.0.6 8.0.6
Safari Apple 7.0.5 7.0.5
Safari Apple 7.1.5 7.1.5
Safari Apple 7.0.6 7.0.6
Safari Apple 7.1.3 7.1.3
Safari Apple 7.1.1 7.1.1
Safari Apple 7.0 7.0
Safari Apple 7.1.4 7.1.4
Safari Apple 8.0.3 8.0.3
Safari Apple 8.0.5 8.0.5
Safari Apple 8.0.4 8.0.4
Safari Apple 7.1.2 7.1.2
Safari Apple * 6.2.6
Safari Apple 7.0.2 7.0.2
Safari Apple 8.0 8.0

References