Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, does not indicate what web site originated an input prompt, which allows remote attackers to conduct spoofing attacks via a crafted site.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published: 2015-08-16T23:00:00

Updated: 2024-08-06T05:56:15.225Z

Reserved: 2015-05-07T00:00:00

Link: CVE-2015-3729

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2015-08-16T23:59:01.410

Modified: 2019-02-08T16:22:44.047

Link: CVE-2015-3729

cve-icon Redhat

No data.