CVE-2011-3243
Cross-site scripting (XSS) vulnerability in WebKit, as used in Apple iOS before 5 and Safari before 5.1.1, allows remote attackers to inject arbitrary web script or HTML via vectors involving inactive DOM windows.
- Apple Iphone Os
- = 3.0, 3.1, 3.1.2, 3.1.3, 3.2, 3.2.1, 3.2.2, 4.0, 4.0.1, 4.0.2, 4.1, 4.2.1, 4.2.5, 4.2.8, 4.3.0, 4.3.1, 4.3.2, 4.3.3, 4.3.5
- Fix
- Available
- CVSS 2.0
- 4.3 MEDIUM
- EPSS
- 2.0% (79th percentile)
- Weakness
- CWE-79
- NVD status
- Modified
- Published
- 2011-10-14
CVE-2011-3243 at NVD
No indexed exploits for CVE-2011-3243 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2011-3243 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.