CVE-2024-40785
CVE-2024-40785
Vexday Risk Score
13Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS 6.1EPSS 0.8%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
29 jul 2024Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
This issue was addressed with improved checks. This issue is fixed in Safari 17.6, iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing maliciously crafted web content may lead to a cross site scripting attack.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Produtos afetados
Apple · iOS and iPadOSApple · macOSApple · SafariApple · tvOSApple · visionOSApple · watchOSReferências
http://seclists.org/fulldisclosure/2024/Jul/15http://seclists.org/fulldisclosure/2024/Jul/16http://seclists.org/fulldisclosure/2024/Jul/17http://seclists.org/fulldisclosure/2024/Jul/18http://seclists.org/fulldisclosure/2024/Jul/21http://seclists.org/fulldisclosure/2024/Jul/22http://seclists.org/fulldisclosure/2024/Jul/23https://lists.debian.org/debian-lts-announce/2024/09/msg00006.htmlhttps://support.apple.com/en-us/120908https://support.apple.com/en-us/120909https://support.apple.com/en-us/120911https://support.apple.com/en-us/120913