CVE-2007-3514

N/A Unknown
Published: July 03, 2007 Modified: April 23, 2026
View on NVD

Description

Cross-domain vulnerability in Apple Safari for Windows 3.0.2 allows remote attackers to bypass the Same Origin Policy and access restricted information from other domains via JavaScript that overwrites the document variable and statically sets the document.domain attribute to a file:// location, a different vector than CVE-2007-3482.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://osvdb.org/38861
Source: cve@mitre.org
http://www.0x000000.com/?i=371
Source: cve@mitre.org
http://osvdb.org/38861
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.0x000000.com/?i=371
Source: af854a3a-2127-422b-91ae-364da2661108

4 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
0.2%
42th percentile
Exploitation Status
Not in CISA KEV

Affected Vendors

apple