CVE-2007-4698
Apple Safari <3.0.4 - XSS
Title source: llmDescription
Apple Safari 3 before Beta Update 3.0.4 on Windows, and Mac OS X 10.4 through 10.4.10, allows remote attackers to conduct cross-site scripting (XSS) attacks by causing JavaScript events to be associated with the wrong frame.
References (11)
Scores
EPSS
0.0120
EPSS Percentile
78.8%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
apple/safari
< 3.0.3
Timeline
Published
Nov 15, 2007
Tracked Since
Feb 18, 2026