CVE-2003-0975

Apple Safari 1.0 through 1.1 on Mac OS X 10.3.1 and Mac OS X 10.2.8 allows remote attackers to steal user cookies from another domain via a link with a hex-encoded null character (%00) followed by the target domain.

Scoring

CVSS base score
0.02
EPSS probability
0.58%
Published
2003-12-10
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs