CVE-2011-1295

WebKit, as used in Google Chrome before 10.0.648.204 and Apple Safari before 5.0.6, does not properly handle node parentage, which allows remote attackers to cause a denial of service (DOM tree corruption), conduct cross-site scripting (XSS) attacks, or possibly have unspecified other impact via unknown vectors.
Configurations

Configuration 1 (hide)

cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2011-03-25 19:55

Updated : 2024-02-04 17:54


NVD link : CVE-2011-1295

Mitre link : CVE-2011-1295

CVE.ORG link : CVE-2011-1295


JSON object : View

Products Affected

apple

  • iphone_os
  • safari

google

  • chrome
CWE
CWE-20

Improper Input Validation