Vulnerabilities > CVE-2007-3759 - Configuration vulnerability in Apple Safari

047910
CVSS 6.8 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
apple
CWE-16

Summary

Safari in Apple iPhone 1.1.1, when requested to disable Javascript, does not disable it until Safari is restarted, which might leave Safari open to attacks that the user does not expect.

Vulnerable Configurations

Part Description Count
OS
Apple
2
Hardware
Apple
1
Application
Apple
1

Common Weakness Enumeration (CWE)