Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x4qw-9jhm-224p

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Google Chrome before 25.0.1364.152 does not properly manage the interaction between the browser process and renderer processes during authorization of the loading of a plug-in, which makes it easier for remote attackers to bypass intended access restrictions via vectors involving a blocked plug-in.

Google Chrome before 25.0.1364.152 does not properly manage the interaction between the browser process and renderer processes during authorization of the loading of a plug-in, which makes it easier for remote attackers to bypass intended access restrictions via vectors involving a blocked plug-in.

EPSS

Процентиль: 58%
0.0036
Низкий

Дефекты

CWE-287

Связанные уязвимости

ubuntu
почти 13 лет назад

Google Chrome before 25.0.1364.152 does not properly manage the interaction between the browser process and renderer processes during authorization of the loading of a plug-in, which makes it easier for remote attackers to bypass intended access restrictions via vectors involving a blocked plug-in.

nvd
почти 13 лет назад

Google Chrome before 25.0.1364.152 does not properly manage the interaction between the browser process and renderer processes during authorization of the loading of a plug-in, which makes it easier for remote attackers to bypass intended access restrictions via vectors involving a blocked plug-in.

debian
почти 13 лет назад

Google Chrome before 25.0.1364.152 does not properly manage the intera ...

EPSS

Процентиль: 58%
0.0036
Низкий

Дефекты

CWE-287