Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8vpq-vv9q-59cq

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Google Chrome prior to 54.0 for iOS had insufficient validation of URLs for windows open by DOM, which allowed a remote attacker to bypass restrictions on navigation to certain URL schemes via crafted HTML pages.

Google Chrome prior to 54.0 for iOS had insufficient validation of URLs for windows open by DOM, which allowed a remote attacker to bypass restrictions on navigation to certain URL schemes via crafted HTML pages.

EPSS

Процентиль: 66%
0.01216
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 9 лет назад

Google Chrome prior to 54.0 for iOS had insufficient validation of URLs for windows open by DOM, which allowed a remote attacker to bypass restrictions on navigation to certain URL schemes via crafted HTML pages.

CVSS3: 4.3
redhat
почти 10 лет назад

Google Chrome prior to 54.0 for iOS had insufficient validation of URLs for windows open by DOM, which allowed a remote attacker to bypass restrictions on navigation to certain URL schemes via crafted HTML pages.

CVSS3: 4.3
nvd
больше 9 лет назад

Google Chrome prior to 54.0 for iOS had insufficient validation of URLs for windows open by DOM, which allowed a remote attacker to bypass restrictions on navigation to certain URL schemes via crafted HTML pages.

CVSS3: 4.3
debian
больше 9 лет назад

Google Chrome prior to 54.0 for iOS had insufficient validation of URL ...

EPSS

Процентиль: 66%
0.01216
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-20