CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.3. It affects Windows. It may be remotely exploitable.
CVE
CVE-2010-1389
Severity
MEDIUM
CVSS
4.3
EPSS
2.93%
Windows
Original NVD Description
Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows user-assisted remote attackers to inject arbitrary web script or HTML via vectors involving a (1) paste or (2) drag-and-drop operation for a selection.