Field Assessment
AI analysis pending.
CVE
CVE-2012-3689
Severity
MEDIUM
CVSS
5.8
EPSS
1.27%
Original Filing — NVD Description
WebKit in Apple Safari before 6.0 does not properly handle drag-and-drop events, which allows user-assisted remote attackers to bypass the Same Origin Policy via a crafted web site.