Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8vpq-vv9q-59cq

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Google Chrome prior to 54.0 for iOS had insufficient validation of URLs for windows open by DOM, which allowed a remote attacker to bypass restrictions on navigation to certain URL schemes via crafted HTML pages.

Google Chrome prior to 54.0 for iOS had insufficient validation of URLs for windows open by DOM, which allowed a remote attacker to bypass restrictions on navigation to certain URL schemes via crafted HTML pages.

EPSS

Процентиль: 51%
0.00275
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 9 лет назад

Google Chrome prior to 54.0 for iOS had insufficient validation of URLs for windows open by DOM, which allowed a remote attacker to bypass restrictions on navigation to certain URL schemes via crafted HTML pages.

CVSS3: 4.3
redhat
больше 9 лет назад

Google Chrome prior to 54.0 for iOS had insufficient validation of URLs for windows open by DOM, which allowed a remote attacker to bypass restrictions on navigation to certain URL schemes via crafted HTML pages.

CVSS3: 4.3
nvd
около 9 лет назад

Google Chrome prior to 54.0 for iOS had insufficient validation of URLs for windows open by DOM, which allowed a remote attacker to bypass restrictions on navigation to certain URL schemes via crafted HTML pages.

CVSS3: 4.3
debian
около 9 лет назад

Google Chrome prior to 54.0 for iOS had insufficient validation of URL ...

EPSS

Процентиль: 51%
0.00275
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-20