Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-whhh-f2g9-5mvc

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Insufficient Policy Enforcement in Omnibox in Google Chrome prior to 58.0.3029.81 for Mac, Windows, and Linux, and 58.0.3029.83 for Android, allowed a remote attacker to perform domain spoofing via IDN homographs in a crafted domain name.

Insufficient Policy Enforcement in Omnibox in Google Chrome prior to 58.0.3029.81 for Mac, Windows, and Linux, and 58.0.3029.83 for Android, allowed a remote attacker to perform domain spoofing via IDN homographs in a crafted domain name.

EPSS

Процентиль: 70%
0.00647
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 8 лет назад

Insufficient Policy Enforcement in Omnibox in Google Chrome prior to 58.0.3029.81 for Mac, Windows, and Linux, and 58.0.3029.83 for Android, allowed a remote attacker to perform domain spoofing via IDN homographs in a crafted domain name.

CVSS3: 6.5
redhat
почти 9 лет назад

Insufficient Policy Enforcement in Omnibox in Google Chrome prior to 58.0.3029.81 for Mac, Windows, and Linux, and 58.0.3029.83 for Android, allowed a remote attacker to perform domain spoofing via IDN homographs in a crafted domain name.

CVSS3: 6.5
nvd
больше 8 лет назад

Insufficient Policy Enforcement in Omnibox in Google Chrome prior to 58.0.3029.81 for Mac, Windows, and Linux, and 58.0.3029.83 for Android, allowed a remote attacker to perform domain spoofing via IDN homographs in a crafted domain name.

CVSS3: 6.5
debian
больше 8 лет назад

Insufficient Policy Enforcement in Omnibox in Google Chrome prior to 5 ...

CVSS3: 6.5
fstec
больше 8 лет назад

Уязвимость реализации Omnibox браузера Google Chrome, позволяющая нарушителю выполнить подмену домена

EPSS

Процентиль: 70%
0.00647
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-863