Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-15966

Опубликовано: 21 сент. 2020
Источник: debian
EPSS Низкий

Описание

Insufficient policy enforcement in extensions in Google Chrome prior to 85.0.4183.121 allowed an attacker who convinced a user to install a malicious extension to obtain potentially sensitive information via a crafted Chrome Extension.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
chromiumfixed87.0.4280.88-0.1package
chromiumend-of-lifestretchpackage

EPSS

Процентиль: 75%
0.00883
Низкий

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 5 лет назад

Insufficient policy enforcement in extensions in Google Chrome prior to 85.0.4183.121 allowed an attacker who convinced a user to install a malicious extension to obtain potentially sensitive information via a crafted Chrome Extension.

CVSS3: 6.5
redhat
больше 5 лет назад

Insufficient policy enforcement in extensions in Google Chrome prior to 85.0.4183.121 allowed an attacker who convinced a user to install a malicious extension to obtain potentially sensitive information via a crafted Chrome Extension.

CVSS3: 4.3
nvd
больше 5 лет назад

Insufficient policy enforcement in extensions in Google Chrome prior to 85.0.4183.121 allowed an attacker who convinced a user to install a malicious extension to obtain potentially sensitive information via a crafted Chrome Extension.

github
больше 3 лет назад

Insufficient policy enforcement in extensions in Google Chrome prior to 85.0.4183.121 allowed an attacker who convinced a user to install a malicious extension to obtain potentially sensitive information via a crafted Chrome Extension.

CVSS3: 5.3
fstec
больше 5 лет назад

Уязвимость расширений браузера Google Chrome, связанная с недостатками разграничения доступа к некоторым функциям, позволяющая нарушителю получить доступ к конфиденциальным данным

EPSS

Процентиль: 75%
0.00883
Низкий