The Private Browsing feature in Safari in Apple iOS before 5.1 allows remote attackers to bypass intended privacy settings and insert history entries via JavaScript code that calls the (1) pushState or (2) replaceState method.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published: 2012-03-08T22:00:00

Updated: 2024-08-06T18:30:52.931Z

Reserved: 2012-01-12T00:00:00

Link: CVE-2012-0585

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2012-03-08T22:55:01.823

Modified: 2018-11-29T14:43:16.140

Link: CVE-2012-0585

cve-icon Redhat

No data.