CVE-2009-1716
CFNetwork in Apple Safari before 4.0 on Windows does not properly protect the temporary files created for downloads, which allows local users to obtain sensitive information by reading these files.
- Affected products
- Safari
- Apple Safari
- ≤ 4.0_beta, 0.8, 0.9, 1.0, 1.0.3, 1.1, 1.2, 1.3, 1.3.1, 1.3.2, 2.0, 2.0.2, 2.0.4, 3.0, 3.0.2, 3.0.3, 3.0.4, 3.1, 3.1.1, 3.1.2, 3.2.1, 3.2.3
- Fix
- Available
- CVSS 2.0
- 2.1 LOW
- EPSS
- 0.4% (34th percentile)
- Weakness
- CWE-264
- NVD status
- Modified
- Published
- 2009-06-10
CVE-2009-1716 at NVD
1 known exploit for CVE-2009-1716
Proof-of-concept code and exploit modules indexed by Sploitus