This script is Copyright (C) 2009-2012 Tenable Network Security, Inc.
The remote host contains a web browser that is affected by several
The version of Safari installed on the remote Mac OS X host is
earlier than 4.0.2 As such, it is potentially affected by two issues :
- A vulnerability in WebKit's handling of parent and top
objects may allow for cross-site scripting attacks.
- A memory corruption issue in WebKit's handling of
numeric character references could lead to a crash or
arbitrary code execution. (CVE-2009-1725)
See also :
Upgrade to Safari 4.0.2 or later.
Risk factor :
High / CVSS Base Score : 9.3
CVSS Temporal Score : 6.9
Public Exploit Available : false
Family: MacOS X Local Security Checks
Nessus Plugin ID: 39768 (macosx_Safari4_0_2.nasl)
Bugtraq ID: 3544135607
CVE ID: CVE-2009-1724CVE-2009-1725
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.