Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9wr7-mfw6-pfpw

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.7

Описание

Cast in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android sent cookies to sites discovered via SSDP, which allowed an attacker on the local network segment to initiate connections to arbitrary URLs and observe any plaintext cookies sent.

Cast in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android sent cookies to sites discovered via SSDP, which allowed an attacker on the local network segment to initiate connections to arbitrary URLs and observe any plaintext cookies sent.

EPSS

Процентиль: 13%
0.00044
Низкий

5.7 Medium

CVSS3

Дефекты

CWE-311

Связанные уязвимости

CVSS3: 5.7
ubuntu
почти 9 лет назад

Cast in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android sent cookies to sites discovered via SSDP, which allowed an attacker on the local network segment to initiate connections to arbitrary URLs and observe any plaintext cookies sent.

CVSS3: 6.5
redhat
почти 9 лет назад

Cast in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android sent cookies to sites discovered via SSDP, which allowed an attacker on the local network segment to initiate connections to arbitrary URLs and observe any plaintext cookies sent.

CVSS3: 5.7
nvd
почти 9 лет назад

Cast in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android sent cookies to sites discovered via SSDP, which allowed an attacker on the local network segment to initiate connections to arbitrary URLs and observe any plaintext cookies sent.

CVSS3: 5.7
debian
почти 9 лет назад

Cast in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linu ...

EPSS

Процентиль: 13%
0.00044
Низкий

5.7 Medium

CVSS3

Дефекты

CWE-311