← Back

CVE-2010-1413

nvd nist
Published: Jun 11, 2010Modified: Apr 29, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, sends NTLM credentials in cleartext in unspecified circumstances, which allows man-in-the-middle attackers to obtain sensitive information via unspecified vectors.

Affected (8)

Products: Apple: Safari, Webkit
2 products
Safari
Webkit
Configuration A
32 platform
Running on/withPlatform Versions
Apple
Mac Os X
Version 10.5.0
Apple
Mac Os X
Version 10.5.1
Apple
Mac Os X
Version 10.5.2
Apple
Mac Os X
Version 10.5.3
Apple
Mac Os X
Version 10.5.4
Apple
Mac Os X
Version 10.5.5
Apple
Mac Os X
Version 10.5.6
Apple
Mac Os X
Version 10.5.7
Apple
Mac Os X
Version 10.5.8
Apple
Mac Os X
Version 10.5
Apple
Mac Os X
Version 10.6.0
Apple
Mac Os X
Version 10.6.1
Apple
Mac Os X
Version 10.6.2
Apple
Mac Os X
Version 10.6.3
Apple
Mac Os X Server
Version 10.5.0
Apple
Mac Os X Server
Version 10.5.1
Apple
Mac Os X Server
Version 10.5.2
Apple
Mac Os X Server
Version 10.5.3
Apple
Mac Os X Server
Version 10.5.4
Apple
Mac Os X Server
Version 10.5.5
Apple
Mac Os X Server
Version 10.5.6
Apple
Mac Os X Server
Version 10.5.7
Apple
Mac Os X Server
Version 10.5.8
Apple
Mac Os X Server
Version 10.5
Apple
Mac Os X Server
Version 10.6.0
Apple
Mac Os X Server
Version 10.6.1
Apple
Mac Os X Server
Version 10.6.2
Apple
Mac Os X Server
Version 10.6.3
Microsoft
Windows 7
All versions
Microsoft
Windows Vista
All versions
Microsoft
Windows Xp
All versions
Microsoft
Windows Xp
All versions
Configuration B
8 vulnerable · 26 platform
Vulnerable SoftwareAffected Versions
Apple
Up to 4.0.5
Version 4.0.0b
Version 4.0.1
Version 4.0.2
Version 4.0.3
Version 4.0.4
Version 4.0
All versions
Running on/withPlatform Versions
Apple
Mac Os X
Version 10.4.0
Apple
Mac Os X
Version 10.4.10
Apple
Mac Os X
Version 10.4.11
Apple
Mac Os X
Version 10.4.1
Apple
Mac Os X
Version 10.4.2
Apple
Mac Os X
Version 10.4.3
Apple
Mac Os X
Version 10.4.4
Apple
Mac Os X
Version 10.4.5
Apple
Mac Os X
Version 10.4.6
Apple
Mac Os X
Version 10.4.7
Apple
Mac Os X
Version 10.4.8
Apple
Mac Os X
Version 10.4.9
Apple
Mac Os X
Version 10.4
Apple
Mac Os X Server
Version 10.4.0
Apple
Mac Os X Server
Version 10.4.10
Apple
Mac Os X Server
Version 10.4.11
Apple
Mac Os X Server
Version 10.4.1
Apple
Mac Os X Server
Version 10.4.2
Apple
Mac Os X Server
Version 10.4.3
Apple
Mac Os X Server
Version 10.4.4
Apple
Mac Os X Server
Version 10.4.5
Apple
Mac Os X Server
Version 10.4.6
Apple
Mac Os X Server
Version 10.4.7
Apple
Mac Os X Server
Version 10.4.8
Apple
Mac Os X Server
Version 10.4.9
Apple
Mac Os X Server
Version 10.4

Related CWEs

References (26)

Source: product-security@apple.com
PatchVendor Advisory
Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Source: product-security@apple.com
Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Source: product-security@apple.com
Patch
Source: product-security@apple.com
Source: product-security@apple.com
PatchVendor Advisory
Source: product-security@apple.com
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.