Unrated severityNVD Advisory· Published Jul 13, 2005· Updated Apr 16, 2026
CVE-2005-2272
CVE-2005-2272
Description
Safari version 2.0 (412) does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin Spoofing Vulnerability."
Affected products
2cpe:2.3:a:apple:safari:2.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:apple:safari:2.0:*:*:*:*:*:*:*
- (no CPE)range: < 2.0.1
Patches
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- secunia.com/multiple_browsers_dialog_origin_vulnerability_test/nvdExploit
- secunia.com/secunia_research/2005-12/advisory/nvdExploitVendor Advisory
- docs.info.apple.com/article.htmlnvd
- secunia.com/advisories/15474nvd
- secunia.com/advisories/17813nvd
- securitytracker.com/idnvd
- www.osvdb.org/17397nvd
- www.securityfocus.com/bid/14011nvd
- www.vupen.com/english/advisories/2005/2659nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/21070nvd
News mentions
0No linked articles in our index yet.