Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-6051

Опубликовано: 25 сент. 2018
Источник: debian

Описание

XSS Auditor in Google Chrome prior to 64.0.3282.119, did not ensure the reporting URL was in the same origin as the page it was on, which allowed a remote attacker to obtain referrer details via a crafted HTML page.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
chromium-browserfixed64.0.3282.119-1package
chromium-browserend-of-lifejessiepackage
chromium-browserend-of-lifewheezypackage

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 7 лет назад

XSS Auditor in Google Chrome prior to 64.0.3282.119, did not ensure the reporting URL was in the same origin as the page it was on, which allowed a remote attacker to obtain referrer details via a crafted HTML page.

CVSS3: 4.3
redhat
около 8 лет назад

XSS Auditor in Google Chrome prior to 64.0.3282.119, did not ensure the reporting URL was in the same origin as the page it was on, which allowed a remote attacker to obtain referrer details via a crafted HTML page.

CVSS3: 4.3
nvd
больше 7 лет назад

XSS Auditor in Google Chrome prior to 64.0.3282.119, did not ensure the reporting URL was in the same origin as the page it was on, which allowed a remote attacker to obtain referrer details via a crafted HTML page.

CVSS3: 4.3
github
больше 3 лет назад

XSS Auditor in Google Chrome prior to 64.0.3282.119, did not ensure the reporting URL was in the same origin as the page it was on, which allowed a remote attacker to obtain referrer details via a crafted HTML page.

suse-cvrf
около 8 лет назад

Security update for chromium