Vulnerabilities > Apple > Safari > 3.0.1b

DATE CVE VULNERABILITY TITLE RISK
2007-08-18 CVE-2007-4424 Remote Security vulnerability in Safari For Windows
Apple Safari for Windows 3.0.3 and earlier does not prompt the user before downloading a file, which allows remote attackers to download arbitrary files to the desktop of a client system via certain HTML, as demonstrated by a filename in the DATA attribute of an OBJECT element.
network
apple
4.3
2007-08-03 CVE-2007-3743 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Safari 3.0.0B/3.0.1B
Stack-based buffer overflow in bookmark handling in Apple Safari 3 Beta before Update 3.0.3 on Windows allows user-assisted remote attackers to cause a denial of service (application crash) or execute arbitrary code via a bookmark with a long title.
network
apple CWE-119
6.8
2007-08-03 CVE-2007-3742 Configuration vulnerability in Apple Safari 3.0.0B/3.0.1B
WebKit in Apple Safari 3 Beta before Update 3.0.3, and iPhone before 1.0.1, does not properly handle the interaction between International Domain Name (IDN) support and Unicode fonts, which allows remote attackers to create a URL containing "look-alike characters" (homographs) and possibly perform phishing attacks.
network
apple CWE-16
4.3