Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9ccr-rx9p-75qq

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Insufficient Policy Enforcement in Extensions in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to perform domain spoofing in permission dialogs via IDN homographs in a crafted Chrome Extension.

Insufficient Policy Enforcement in Extensions in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to perform domain spoofing in permission dialogs via IDN homographs in a crafted Chrome Extension.

EPSS

Процентиль: 79%
0.01299
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 8 лет назад

Insufficient Policy Enforcement in Extensions in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to perform domain spoofing in permission dialogs via IDN homographs in a crafted Chrome Extension.

CVSS3: 4.3
redhat
больше 8 лет назад

Insufficient Policy Enforcement in Extensions in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to perform domain spoofing in permission dialogs via IDN homographs in a crafted Chrome Extension.

CVSS3: 6.5
nvd
почти 8 лет назад

Insufficient Policy Enforcement in Extensions in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to perform domain spoofing in permission dialogs via IDN homographs in a crafted Chrome Extension.

CVSS3: 6.5
debian
почти 8 лет назад

Insufficient Policy Enforcement in Extensions in Google Chrome prior t ...

suse-cvrf
больше 8 лет назад

Security update for chromium

EPSS

Процентиль: 79%
0.01299
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-20