The Private Browsing feature in Safari in Apple iOS before 5.1 allows remote attackers to bypass intended privacy settings and insert history entries via JavaScript code that calls the (1) pushState or (2) replaceState method.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://www.securitytracker.com/id?1026774 | vdb entry third party advisory |
http://secunia.com/advisories/48377 | third party advisory |
http://osvdb.org/79964 | vdb entry broken link |
https://exchange.xforce.ibmcloud.com/vulnerabilities/73871 | vdb entry third party advisory |
http://lists.apple.com/archives/security-announce/2012/Mar/msg00003.html | mailing list vendor advisory |
http://secunia.com/advisories/48288 | third party advisory |
http://lists.apple.com/archives/security-announce/2012/Mar/msg00001.html | mailing list vendor advisory |