Release DateOct 29, 2011 |
Severityhigh |
ImpactSystem Compromise: Remote attackers can gain control of vulnerable systems. |
DescriptionThis indicates an attack attempt against an Arbitrary File Creation vulnerability in Apple Safari.The vulnerability can be exploited so that visiting a maliciously crafted website may lead to arbitrary files being created with the privileges of the user, which makes it possible to execute arbitrary code. |
Affected ProductsWebKit in Apple Safari before 5.0.6 |
Recommended ActionsUpgrade to the latest version, available from the web site.http://www.apple.com/safari/ |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2011-1774 |
Reference/shttp://www.exploit-db.com/exploits/17993/ |