Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j6j9-m952-pp68

Опубликовано: 15 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Insufficient data validation in Downloads in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

Insufficient data validation in Downloads in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

EPSS

Процентиль: 21%
0.00067
Низкий

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
ubuntu
8 месяцев назад

Insufficient data validation in Downloads in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

CVSS3: 4.3
nvd
8 месяцев назад

Insufficient data validation in Downloads in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

msrc
8 месяцев назад

Chromium: CVE-2024-9963 Insufficient data validation in Downloads

CVSS3: 4.3
debian
8 месяцев назад

Insufficient data validation in Downloads in Google Chrome prior to 13 ...

CVSS3: 4.3
fstec
больше 1 года назад

Уязвимость компонента Downloads (Загрузки) браузеров Microsoft Edge и Google Chrome, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 21%
0.00067
Низкий

4.3 Medium

CVSS3