This application requires Javascript for optimal performance.

Apple.Safari.Webkit.libxslt.Arbitrary.File.Creation

Release Date

Oct 29, 2011

Severity

high

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attack attempt against an Arbitrary File Creation vulnerability in Apple Safari.

The vulnerability can be exploited so that visiting a maliciously crafted website may lead to arbitrary files being created with the privileges of the user, which makes it possible to execute arbitrary code.

Affected Products

WebKit in Apple Safari before 5.0.6

Recommended Actions

Upgrade to the latest version, available from the web site.
http://www.apple.com/safari/

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2011-1774

Reference/s

http://www.exploit-db.com/exploits/17993/

Reference: VID-29763