CVE-2004-1121

Apple Safari <1.2.3 - XSS

Title source: llm
STIX 2.1

Description

Apple Safari 1.0 through 1.2.3 allows remote attackers to spoof the URL displayed in the status bar via TABLE tags.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Gilbert Verdian · textremoteosx
https://www.exploit-db.com/exploits/24716

References (5)

Core 5
Core References
Patch, Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/925430
Exploit, Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/11573
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/13047/
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/17909
Patch, Vendor Advisory vendor-advisory x_refsource_apple
http://lists.apple.com/archives/security-announce/2004/Dec/msg00000.html

Scores

EPSS 0.1117
EPSS Percentile 93.6%

Details

Status published
Products (6)
apple/safari 1.0
apple/safari 1.1
apple/safari 1.2
apple/safari 1.2.1
apple/safari 1.2.2
apple/safari 1.2.3
Published Nov 01, 2004
Tracked Since Feb 18, 2026