← Back

CVE-2009-2199

nvd nist
Published: Aug 12, 2009Modified: Apr 23, 2026

JSON object

Loading...
5.8
Vector
AV:N/AC:M/Au:N/C:N/I:P/A:P
Exploitability: 8.6 / Impact: 4.9
Source: NVD

Description

Incomplete blacklist vulnerability in WebKit in Apple Safari before 4.0.3, as used on iPhone OS before 3.1, iPhone OS before 3.1.1 for iPod touch, and other platforms, allows remote attackers to spoof domain names in URLs, and possibly conduct phishing attacks, via unspecified homoglyphs.

Affected (54)

Products: Apple: Safari, Iphone Os
2 products
Safari
Iphone Os
Configuration A
33 vulnerable
Vulnerable SoftwareAffected Versions
Apple
Up to 4.0.2
Version 2.0.0
Version 2.0.1
Version 2.0.2
Version 2.0.3
Version 2.0.3 417.8
Version 2.0.3 417.9.2
Version 2.0.3 417.9.3
Version 2.0.3 417.9
Version 2.0.4
Version 2.0
Version 3.0.0
Version 3.0.0b
Version 3.0.1
Version 3.0.1 beta
Version 3.0.1b
Version 3.0.2
Version 3.0.2b
Version 3.0.3
Version 3.0.3b
Version 3.0.4
Version 3.0.4b
Version 3.0
Version 3.1.0
Version 3.1.0b
Version 3.1.1
Version 3.1.2
Version 3.2.0
Version 3.2.1
Version 3.2.2
Version 4.0.0b
Version 4.0.1
Version 4.0
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 3.0.1
Running on/withPlatform Versions
Apple
Iphone Os
All versions
Configuration C
20 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Apple
Up to 3.1
Version 1.0.0
Version 1.0.1
Version 1.0.2
Version 1.1.0
Version 1.1.1
Version 1.1.2
Version 1.1.3
Version 1.1.4
Version 1.1.5
Version 2.0.0
Version 2.0.1
Version 2.0.2
Version 2.0
Version 2.1.1
Version 2.1
Version 2.2.1
Version 2.2
Version 3.0.1
Version 3.0
Running on/withPlatform Versions
Apple
Ipod Touch
All versions

References (20)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
Patch
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.