CVE-2008-4216

The plug-in interface in WebKit in Apple Safari before 3.2 does not prevent plug-ins from accessing local URLs, which allows remote attackers to obtain sensitive information via vectors that "launch local files."
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 69%
VendorProductVersion
applesafari
𝑥
≤ 3.1.2
applesafari
0.8
applesafari
0.9
applesafari
1.0
applesafari
1.0:beta
applesafari
1.0:beta2
applesafari
1.0.3
applesafari
1.1
applesafari
1.1.1
applesafari
1.2
applesafari
1.2.1
applesafari
1.2.2
applesafari
1.2.3
applesafari
1.2.4
applesafari
1.2.5
applesafari
1.3
applesafari
1.3.1
applesafari
1.3.2
applesafari
2.0
applesafari
2.0.1
applesafari
2.0.2
applesafari
2.0.3
applesafari
2.0.3_417.9.3:_417.9
applesafari
2.0.4
applesafari
2.0.4_419.3:_419.3
applesafari
2.0_pre:_pre
applesafari
3.0
applesafari
3.0
applesafari
3.0.1
applesafari
3.0.1
applesafari
3.0.2
applesafari
3.0.2
applesafari
3.0.3
applesafari
3.0.3
applesafari
3.0.4
applesafari
3.0.4_beta:_beta
applesafari
3.0.4_beta:_beta
applesafari
3.1
applesafari
3.1.1
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
webkit
jaunty
not-affected
intrepid
not-affected
hardy
not-affected
gutsy
ignored
dapper
dne