Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9x82-vrjw-2m6c

Опубликовано: 06 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Inappropriate implementation in FedCM in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

Inappropriate implementation in FedCM in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

EPSS

Процентиль: 27%
0.0009
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-451

Связанные уязвимости

CVSS3: 4.3
ubuntu
11 месяцев назад

Inappropriate implementation in FedCM in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

CVSS3: 4.3
nvd
11 месяцев назад

Inappropriate implementation in FedCM in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

msrc
11 месяцев назад

Chromium: CVE-2024-6999 Inappropriate implementation in FedCM

CVSS3: 4.3
debian
11 месяцев назад

Inappropriate implementation in FedCM in Google Chrome prior to 127.0. ...

CVSS3: 5.5
fstec
11 месяцев назад

Уязвимость компонента FedCM браузеров Google Chrome и Microsoft Edge, позволяющая нарушителю получить несанкционированный доступ к системе

EPSS

Процентиль: 27%
0.0009
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-451