VYPR
Unrated severityNVD Advisory· Published Jul 1, 2014· Updated May 6, 2026

CVE-2014-1369

CVE-2014-1369

Description

WebKit in Apple Safari before 6.1.5 and 7.x before 7.0.5 allows user-assisted remote attackers to access file: URLs by leveraging a URL drag operation that originates at a crafted web site.

Affected products

17
  • Apple Inc./Safari17 versions
    cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*+ 16 more
    • cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*range: <=6.1.4
    • cpe:2.3:a:apple:safari:6.0:*:*:*:*:*:*:*
    • cpe:2.3:a:apple:safari:6.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:apple:safari:6.0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:apple:safari:6.0.3:*:*:*:*:*:*:*
    • cpe:2.3:a:apple:safari:6.0.4:*:*:*:*:*:*:*
    • cpe:2.3:a:apple:safari:6.0.5:*:*:*:*:*:*:*
    • cpe:2.3:a:apple:safari:6.1:*:*:*:*:*:*:*
    • cpe:2.3:a:apple:safari:6.1.1:*:*:*:*:*:*:*
    • cpe:2.3:a:apple:safari:6.1.2:*:*:*:*:*:*:*
    • cpe:2.3:a:apple:safari:6.1.3:*:*:*:*:*:*:*
    • cpe:2.3:a:apple:safari:7.0:*:*:*:*:*:*:*
    • cpe:2.3:a:apple:safari:7.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:apple:safari:7.0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:apple:safari:7.0.3:*:*:*:*:*:*:*
    • cpe:2.3:a:apple:safari:7.0.4:*:*:*:*:*:*:*
    • (no CPE)range: <6.1.5, <7.0.5

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.