MEDIUM · 6.8

CVE-2007-3759

Safari in Apple iPhone 1.1.1, when requested to disable Javascript, does not disable it until Safari is restarted, which might leave Safari open to attacks that the user does not expect.

Vulnerability Description

Safari in Apple iPhone 1.1.1, when requested to disable Javascript, does not disable it until Safari is restarted, which might leave Safari open to attacks that the user does not expect.

CVSS Score

6.8

MEDIUM

AV:N/AC:M/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
AppleIphone1.0
AppleIphone Os1.0.1
AppleSafariAll versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2007-3759?

CVE-2007-3759 is a vulnerability with a CVSS score of 6.8 (MEDIUM). Safari in Apple iPhone 1.1.1, when requested to disable Javascript, does not disable it until Safari is restarted, which might leave Safari open to attacks that the user does not expect.

How severe is CVE-2007-3759?

CVE-2007-3759 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-3759?

Check the references section above for vendor advisories and patch information. Affected products include: Apple Iphone, Apple Iphone Os, Apple Safari.