The Private Browsing feature in Safari in Apple iOS before 5.1 allows remote attackers to bypass intended privacy settings and insert history entries via JavaScript code that calls the (1) pushState or (2) replaceState method.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: apple
Published: 2012-03-08T22:00:00
Updated: 2024-08-06T18:30:52.931Z
Reserved: 2012-01-12T00:00:00
Link: CVE-2012-0585
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2012-03-08T22:55:01.823
Modified: 2018-11-29T14:43:16.140
Link: CVE-2012-0585
Redhat
No data.