Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6x6f-v4f4-m9jh

Опубликовано: 02 нояб. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Insufficient policy enforcement in custom tabs in Google Chrome on Android prior to 106.0.5249.62 allowed an attacker who convinced the user to install an application to bypass same origin policy via a crafted application. (Chrome security severity: Medium)

Insufficient policy enforcement in custom tabs in Google Chrome on Android prior to 106.0.5249.62 allowed an attacker who convinced the user to install an application to bypass same origin policy via a crafted application. (Chrome security severity: Medium)

EPSS

Процентиль: 33%
0.00133
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-602

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 3 лет назад

Insufficient policy enforcement in custom tabs in Google Chrome on Android prior to 106.0.5249.62 allowed an attacker who convinced the user to install an application to bypass same origin policy via a crafted application. (Chromium security severity: Medium)

CVSS3: 6.5
nvd
больше 3 лет назад

Insufficient policy enforcement in custom tabs in Google Chrome on Android prior to 106.0.5249.62 allowed an attacker who convinced the user to install an application to bypass same origin policy via a crafted application. (Chromium security severity: Medium)

msrc
больше 3 лет назад

Chromium: CVE-2022-3310 Insufficient policy enforcement in Custom Tabs

CVSS3: 6.5
debian
больше 3 лет назад

Insufficient policy enforcement in custom tabs in Google Chrome on And ...

CVSS3: 6.5
fstec
больше 3 лет назад

Уязвимость пользовательских вкладок браузеров Google Chrome и Microsoft Edge, позволяющая нарушителю обойти существующие ограничения безопасности и раскрыть защищаемую информацию

EPSS

Процентиль: 33%
0.00133
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-602