Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2011-3218

EPSS 0.66% · P71
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2011-3218

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The "Save for Web" selection in QuickTime Player in Apple Mac OS X through 10.6.8 exports HTML documents that contain an http link to a script file, which allows man-in-the-middle attackers to conduct cross-site scripting (XSS) attacks by spoofing the http server during local viewing of an exported document.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Apple Mac OS ‘QuickTime Player’ 跨站脚本攻击漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Apple Mac OS X是美国苹果(Apple)公司为Mac计算机所开发的一套专用操作系统。 Apple Mac OS X至10.6.8版本中的QuickTime Player中存在跨站脚本攻击漏洞。由于"Save for Web"选项输出包含到脚本文件http连接的HTML文档,中间人攻击者可通过本地浏览输出文档时哄骗http服务器,执行跨站脚本攻击。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2011-3218

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2011-3218

登录查看更多情报信息。

Same Patch Batch · n/a · 2011-10-14 · 47 CVEs total

CVE-2011-3259Apple iOS/TV 资源管理错误漏洞
CVE-2011-3426Apple iOS ‘Safari’ 跨站脚本攻击漏洞
CVE-2011-3429Apple iOS Settings组件信任管理漏洞
CVE-2011-3432Apple iOS UIKit Alerts组件资源管理错误漏洞
CVE-2011-3434Apple iOS WiFi组件信任管理漏洞
CVE-2011-3435Apple Mac OS‘Open Directory’信任管理漏洞
CVE-2011-3436Apple Mac OS X‘Open Directory’权限许可和访问控制漏洞
CVE-2011-3437Apple Mac OS X‘Apple Type Services’数字错误漏洞
CVE-2011-3431Apple iOS Home screen组件信息泄露漏洞
CVE-2011-3260Apple Mobile OfficeImport Framework Word文档解析内存破坏漏洞
CVE-2011-3261Apple iOS ‘OfficeImport’ 代码注入漏洞
CVE-2011-3257Apple iOS ‘Data Access’ 组件权限许可和访问控制漏洞
CVE-2011-3256Apple iOS ‘FreeType’ 代码注入漏洞
CVE-2011-3255Apple iOS CFNetwork 信任管理漏洞
CVE-2011-3254Apple iOS Calendar 跨站脚本攻击漏洞
CVE-2011-3253Apple iOS CalDAV 信息泄露漏洞
CVE-2011-3246Apple iOS CFNetwork 信息泄露漏洞
CVE-2011-3245Apple iOS Keyboards组件信任管理漏洞
CVE-2011-3243Apple iOS Safari 跨站脚本攻击漏洞
CVE-2011-3242Apple Safari Mac OS X平台信息泄露漏洞

Showing top 20 of 47 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2011-3218

No comments yet


Leave a comment