CVE-2008-4216

EUVD-2008-4199
The plug-in interface in WebKit in Apple Safari before 3.2 does not prevent plug-ins from accessing local URLs, which allows remote attackers to obtain sensitive information via vectors that "launch local files."
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 70%
Affected Products (NVD)
VendorProductVersion
applesafari
𝑥
≤ 3.1.2
applesafari
0.8
applesafari
0.9
applesafari
1.0
applesafari
1.0:beta
applesafari
1.0:beta2
applesafari
1.0.3
applesafari
1.1
applesafari
1.1.1
applesafari
1.2
applesafari
1.2.1
applesafari
1.2.2
applesafari
1.2.3
applesafari
1.2.4
applesafari
1.2.5
applesafari
1.3
applesafari
1.3.1
applesafari
1.3.2
applesafari
2.0
applesafari
2.0.1
applesafari
2.0.2
applesafari
2.0.3
applesafari
2.0.3_417.9.3:_417.9
applesafari
2.0.4
applesafari
2.0.4_419.3:_419.3
applesafari
2.0_pre:_pre
applesafari
3.0
applesafari
3.0
applesafari
3.0.1
applesafari
3.0.1
applesafari
3.0.2
applesafari
3.0.2
applesafari
3.0.3
applesafari
3.0.3
applesafari
3.0.4
applesafari
3.0.4_beta:_beta
applesafari
3.0.4_beta:_beta
applesafari
3.1
applesafari
3.1.1
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
webkit
dapper
dne
gutsy
ignored
hardy
not-affected
intrepid
not-affected
jaunty
not-affected